V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2022-29083
CVE
Medium

Prior Dell BIOS versions contain an Improper Authentication vulnerability. An unauthenticated attacker with physical access to the system c…

CVSS
6.8
Medium
EPSS
0.00
p27
Published
2022-01-01
Updated
2022-01-01
Description

Prior Dell BIOS versions contain an Improper Authentication vulnerability. An unauthenticated attacker with physical access to the system could potentially exploit this vulnerability by bypassing drive security mechanisms in order to gain access to the system.

Tags · CWE
CWE-287
CAPEC-22
CAPEC-57
CAPEC-94
CAPEC-114
CAPEC-115
CAPEC-151
CAPEC-194
CAPEC-593
CAPEC-633
CAPEC-650
Affected products
Chengming_3980_firmwareChengming_3990_firmwareChengming_3991_firmwareG3_3579_firmwareG3_3779_firmwareG5_5000_firmwareG5_5090_firmwareG5_5587_firmwareG7_7588_firmwareInspiron_3470_firmwareInspiron_3480_firmwareInspiron_3493_firmwareInspiron_3501_firmwareInspiron_3580_firmwareInspiron_3593_firmwareInspiron_3670_firmwareInspiron_3780_firmwareInspiron_3790_firmwareInspiron_3793_firmwareInspiron_3880_firmware
CVSS vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Timeline
2022-01-01
Published
2022-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: P
Physical (P)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.004 · p27
Known exploited (KEV)
No
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-57 · CWE-287
└ via CAPEC-633 · CWE-287
└ via CAPEC-593 · CWE-287
└ via CAPEC-650 · CWE-287
└ via CAPEC-114 · CWE-287
└ via CAPEC-593 · CWE-287
└ via CAPEC-94 · CWE-287
└ via CAPEC-593 · CWE-287
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
chengming_3980_firmware*Tracked
chengming_3990_firmware*Tracked
chengming_3991_firmware*Tracked
g3_3579_firmware*Tracked
g3_3779_firmware*Tracked
g5_5000_firmware*Tracked
g5_5090_firmware*Tracked
g5_5587_firmware*Tracked
g7_7588_firmware*Tracked
inspiron_3470_firmware*Tracked
inspiron_3480_firmware*Tracked
inspiron_3493_firmware*Tracked
inspiron_3501_firmware*Tracked
inspiron_3580_firmware*Tracked
inspiron_3593_firmware*Tracked
inspiron_3670_firmware*Tracked
inspiron_3780_firmware*Tracked
inspiron_3790_firmware*Tracked
inspiron_3793_firmware*Tracked
inspiron_3880_firmware*Tracked
Showing first 20 of 108
Source databases
CVE