CVE-2023-32453

Dell BIOS contains an improper authentication vulnerability. A malicious user with physical access to the system may potentially exploit this vulnerability in order to modify a security-critical UEFI variable without knowledge of the BIOS administrator.

ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.6 MEDIUM
PHYSICAL
LOW
HIGH
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:L
dellCNA
4.6 MEDIUM
PHYSICAL
LOW
HIGH
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:L
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 6%
VendorProductVersion
dellalienware_m15_r7_firmware
𝑥
< 1.18.0
dellalienware_m16_firmware
𝑥
< 1.10.1
dellalienware_m18_firmware
𝑥
< 1.10.1
dellchengming_3900_firmware
𝑥
< 1.15.0
dellchengming_3901_firmware
𝑥
< 1.15.0
dellchengming_3910_firmware
𝑥
< 1.6.0
dellchengming_3911_firmware
𝑥
< 1.6.0
dellg15_5520_firmware
𝑥
< 1.18.0
dellg16_7620_firmware
𝑥
< 1.18.0
dellg3_3500_firmware
𝑥
< 1.26.0
dellg5_15_5500_firmware
𝑥
< 1.26.0
dellg7_15_7500_firmware
𝑥
< 1.26.0
dellg7_17_7700_firmware
𝑥
< 1.26.0
dellprecision_5680_firmware
𝑥
< 1.4.1
dellinspiron_14_5410_firmware
𝑥
< 2.20.0
dellinspiron_14_5418_firmware
𝑥
< 2.20.0
dellinspiron_15_3511_firmware
𝑥
< 1.23.0
dellinspiron_15_5510_firmware
𝑥
< 2.20.0
dellinspiron_15_5518_firmware
𝑥
< 2.20.0
dellinspiron_24_5420_all-in-one_firmware
𝑥
< 1.4.0
dellinspiron_24_5421_all-in-one_firmware
𝑥
< 1.4.0
dellinspiron_27_7720_all-in-one_firmware
𝑥
< 1.4.0
dellinspiron_3020_small_desktop_firmware
𝑥
≤ 1.6.0
dellinspiron_3020_desktop_firmware
𝑥
< 1.6.0
dellinspiron_3493_firmware
𝑥
< 1.27.0
dellinspiron_3511_firmware
𝑥
< 1.23.0
dellinspiron_3593_firmware
𝑥
< 1.27.0
dellinspiron_3793_firmware
𝑥
< 1.27.0
dellinspiron_3891_firmware
𝑥
< 1.19.0
dellinspiron_3910_firmware
𝑥
< 1.15.0
dellinspiron_5410_firmware
𝑥
< 2.20.0
dellinspiron_5493_firmware
𝑥
< 1.27.0
dellinspiron_5593_firmware
𝑥
< 1.27.0
dellinspiron_7300_2-in-1_firmware
𝑥
< 1.19.0
dellinspiron_7490_firmware
𝑥
< 1.22.0
dellinspiron_7500_firmware
𝑥
< 1.24.0
dellinspiron_7500_2-in-1_black_firmware
𝑥
< 1.19.0
dellinspiron_7501_firmware
𝑥
< 1.24.0
dellinspiron_7510_firmware
𝑥
< 1.17.0
dellinspiron_7610_firmware
𝑥
< 1.17.0
delllatitude_3140_firmware
𝑥
< 1.8.0
delllatitude_3301_firmware
𝑥
< 1.27.0
delllatitude_3320_firmware
𝑥
< 1.23.0
delllatitude_3330_firmware
𝑥
< 1.15.0
delllatitude_3340_firmware
𝑥
< 1.6.0
delllatitude_3400_firmware
𝑥
< 1.29.0
delllatitude_3430_firmware
𝑥
< 1.12.0
delllatitude_3440_firmware
𝑥
< 1.6.0
delllatitude_3500_firmware
𝑥
< 1.29.0
delllatitude_3530_firmware
𝑥
< 1.12.0
delllatitude_3540_firmware
𝑥
< 1.6.0
delllatitude_5420_firmware
𝑥
< 1.30.0
delllatitude_5430_firmware
𝑥
< 1.15.0
delllatitude_5431_firmware
𝑥
< 1.15.0
delllatitude_7230_rugged_extreme_tablet_firmware
𝑥
< 1.8.0
delllatitude_7320_firmware
𝑥
< 1.28.0
delllatitude_7420_firmware
𝑥
< 1.28.0
delllatitude_7520_firmware
𝑥
< 1.28.0
delllatitude_9330_firmware
𝑥
< 1.13.0
delllatitude_9520_firmware
𝑥
< 1.24.0
delllatitude_rugged_5430_firmware
𝑥
< 1.20.0
delllatitude_rugged_7330_firmware
𝑥
< 1.20.0
delloptiplex_3000_firmware
𝑥
< 1.15.0
delloptiplex_3000_thin_client_firmware
𝑥
< 1.11.0
delloptiplex_5000_firmware
𝑥
< 1.15.0
delloptiplex_5090_firmware
𝑥
< 1.19.0
delloptiplex_5400_all-in-one_firmware
𝑥
< 1.1.30
delloptiplex_5490_all-in-one_firmware
𝑥
< 1.23.0
delloptiplex_7000_firmware
𝑥
< 1.15.0
delloptiplex_7090_firmware
𝑥
< 1.19.0
delloptiplex_7400_all-in-one_firmware
𝑥
< 1.1.30
delloptiplex_7490_all-in-one_firmware
𝑥
< 1.23.0
delloptiplex_7410_all-in-one_firmware
𝑥
< 1.6.0
delloptiplex_micro_plus_7010_firmware
𝑥
< 1.6.0
delloptiplex_small_form_factor_plus_7010_firmware
𝑥
< 1.6.0
delloptiplex_tower_plus_7010_firmware
𝑥
< 1.6.0
delloptiplex_xe4_firmware
𝑥
< 1.15.0
dellprecision_3260_xe_compact_firmware
𝑥
< 2.7.0
dellprecision_3260_compact_firmware
𝑥
< 2.7.0
dellprecision_3450_firmware
𝑥
< 1.19.0
dellprecision_3460_xe_small_form_factor_firmware
𝑥
< 2.7.0
dellprecision_3460_small_form_factor_firmware
𝑥
< 2.7.0
dellprecision_3470_firmware
𝑥
< 1.15.0
dellprecision_3650_tower_firmware
𝑥
< 1.24.0
dellprecision_3660_firmware
𝑥
< 2.7.0
dellprecision_5470_firmware
𝑥
< 1.15.0
dellprecision_5570_firmware
𝑥
< 1.16.0
dellprecision_5860_tower_firmware
𝑥
< 1.0.10
dellprecision_7960_tower_firmware
𝑥
< 1.0.9
dellvostro_3020_sff_firmware
𝑥
< 1.6.0
dellvostro_3020_t_firmware
𝑥
< 1.6.0
dellvostro_3510_firmware
𝑥
< 1.23.0
dellvostro_3690_firmware
𝑥
< 1.19.0
dellvostro_3710_firmware
𝑥
< 1.15.0
dellvostro_3890_firmware
𝑥
< 1.19.0
dellvostro_3910_firmware
𝑥
< 1.15.0
dellvostro_5410_firmware
𝑥
< 2.20.0
dellvostro_5491_firmware
𝑥
< 1.27.0
dellvostro_5510_firmware
𝑥
< 2.20.0
dellvostro_5591_firmware
𝑥
< 1.27.0
dellvostro_5890_firmware
𝑥
< 1.19.0
dellvostro_7500_firmware
𝑥
< 1.24.0
dellvostro_7510_firmware
𝑥
< 1.17.0
dellxps_13_9305_firmware
𝑥
< 1.16.0
dellxps_13_7390_firmware
𝑥
< 1.21.0
dellxps_13_7390_2-in-1_firmware
𝑥
< 1.26.0
dellxps_13_9300_firmware
𝑥
< 1.19.0
dellxps_13_9310_firmware
𝑥
< 3.17.0
dellxps_13_9310_2-in-1_firmware
𝑥
< 2.19.0
dellxps_13_9315_firmware
𝑥
< 1.13.0
dellxps_15_9520_firmware
𝑥
< 1.16.0
𝑥
= Vulnerable software versions