V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2023-44298
CVE
Medium

Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability. An una…

CVSS
6.8
Medium
EPSS
0.00
p15
Published
2023-01-01
Updated
2023-01-01
Description

Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability. An unauthenticated physical attacker could potentially exploit this vulnerability, leading to information tampering, code execution, denial of service.

Tags · CWE
CWE-1234
CAPEC-176
Affected products
Poweredge_c6620_firmwarePoweredge_hs5610_firmwarePoweredge_hs5620_firmwarePoweredge_mx760c_firmwarePoweredge_r660_firmwarePoweredge_r660xs_firmwarePoweredge_r760_firmwarePoweredge_r760xa_firmwarePoweredge_r760xd2_firmwarePoweredge_r760xs_firmwarePoweredge_r860_firmwarePoweredge_r960_firmwarePoweredge_t560_firmware
CVSS vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Timeline
2023-01-01
Published
2023-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: P
Physical (P)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.002 · p15
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
poweredge_c6620_firmware*Tracked
poweredge_hs5610_firmware*Tracked
poweredge_hs5620_firmware*Tracked
poweredge_mx760c_firmware*Tracked
poweredge_r660_firmware*Tracked
poweredge_r660xs_firmware*Tracked
poweredge_r760_firmware*Tracked
poweredge_r760xa_firmware*Tracked
poweredge_r760xd2_firmware*Tracked
poweredge_r760xs_firmware*Tracked
poweredge_r860_firmware*Tracked
poweredge_r960_firmware*Tracked
poweredge_t560_firmware*Tracked
Source databases
CVE