CVE-2022-22558

Dell PowerEdge Server BIOS and Dell Precision Workstation 7910 and 7920 Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A Local High Privileged attacker could potentially exploit this vulnerability leading to arbitrary writes or denial of service.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.7 MEDIUM
LOCAL
HIGH
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:H
dellCNA
5.7 MEDIUM
LOCAL
HIGH
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:H
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 11%
VendorProductVersion
dellr6415_firmware
𝑥
< 1.18.0
dellr7415_firmware
𝑥
< 1.18.0
dellr7425_firmware
𝑥
< 1.18.0
dellr730_firmware
𝑥
< 2.14.0
dellr730xd_firmware
𝑥
< 2.14.0
dellr630_firmware
𝑥
< 2.14.0
dellc4130_firmware
𝑥
< 2.14.0
dellm630_firmware
𝑥
< 2.14.0
dellm630p_firmware
𝑥
< 2.14.0
dellfc630_firmware
𝑥
< 2.14.0
dellfc430_firmware
𝑥
< 2.14.0
dellm830_firmware
𝑥
< 2.14.0
dellm830p_firmware
𝑥
< 2.14.0
dellfc830_firmware
𝑥
< 2.14.0
dellt630_firmware
𝑥
< 2.14.0
dellr530_firmware
𝑥
< 2.14.0
dellr430_firmware
𝑥
< 2.14.0
dellt430_firmware
𝑥
< 2.14.0
dellr830_firmware
𝑥
< 1.14.0
dellc6320_firmware
𝑥
< 2.14.1
𝑥
= Vulnerable software versions