CVE-2023-39251

EUVD-2023-42985
Dell BIOS contains an Improper Input Validation vulnerability. A local malicious user with high privileges could potentially exploit this vulnerability in order to corrupt memory on the system.

ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.7 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:L
dellCNA
6.7 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 9%
Affected Products (NVD)
VendorProductVersion
dellinspiron_7510_firmware
𝑥
< 1.20.0
dellinspiron_7610_firmware
𝑥
< 1.20.0
delllatitude_5430_rugged_firmware
𝑥
< 1.23.0
delllatitude_5521_firmware
𝑥
< 1.27.0
delllatitude_7330_rugged_firmware
𝑥
< 1.23.0
dellprecision_3561_firmware
𝑥
< 1.27.0
dellprecision_5560_firmware
𝑥
< 1.25.0
dellprecision_5760_firmware
𝑥
< 1.24.0
dellprecision_7560_firmware
𝑥
< 1.27.0
dellprecision_7760_firmware
𝑥
< 1.27.0
dellvostro_7510_firmware
𝑥
< 1.20.0
dellxps_15_9510_firmware
𝑥
< 1.25.0
dellxps_17_9710_firmware
𝑥
< 1.24.0
𝑥
= Vulnerable software versions