V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2024-52541
CVE
High

Dell Client Platform BIOS contains a Weak Authentication vulnerability. A high privileged attacker with local access could potentially expl…

CVSS
8.2
High
EPSS
0.00
p5
Published
2024-01-01
Updated
2024-01-01
Description

Dell Client Platform BIOS contains a Weak Authentication vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.

Tags · CWE
CWE-1390
Affected products
Alienware_m15_r6_firmwareAlienware_m15_r7_firmwareAlienware_m16_r1_firmwareAlienware_m16_r2_firmwareAlienware_m18_r1_firmwareAlienware_m18_r2_firmwareAlienware_x14_r2_firmwareAlienware_x16_r1_firmwareAlienware_x16_r2_firmwareChengming_3900_firmwareChengming_3910_firmwareChengming_3911_firmwareChengming_3990_firmwareChengming_3991_firmwareEdge_gateway_3001_firmwareEdge_gateway_3002_firmwareEdge_gateway_3003_firmwareEdge_gateway_5000_firmwareEmbedded_box_pc_3000_firmwareEmbedded_box_pc_5000_firmware
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Timeline
2024-01-01
Published
2024-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: L
Local (L)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: H
High (H)
User Interaction
UI: N
None (N)
Scope
S: C
Changed (C)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.002 · p5
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
alienware_m15_r6_firmware*Tracked
alienware_m15_r7_firmware*Tracked
alienware_m16_r1_firmware*Tracked
alienware_m16_r2_firmware*Tracked
alienware_m18_r1_firmware*Tracked
alienware_m18_r2_firmware*Tracked
alienware_x14_r2_firmware*Tracked
alienware_x16_r1_firmware*Tracked
alienware_x16_r2_firmware*Tracked
chengming_3900_firmware*Tracked
chengming_3910_firmware*Tracked
chengming_3911_firmware*Tracked
chengming_3990_firmware*Tracked
chengming_3991_firmware*Tracked
edge_gateway_3001_firmware*Tracked
edge_gateway_3002_firmware*Tracked
edge_gateway_3003_firmware*Tracked
edge_gateway_5000_firmware*Tracked
embedded_box_pc_3000_firmware*Tracked
embedded_box_pc_5000_firmware*Tracked
Showing first 20 of 392
Source databases
CVE