7.8
CVSSv3

CVE-2023-25537

Published: 22/05/2023 Updated: 30/05/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

Dell PowerEdge 14G server BIOS versions before 2.18.1 and Dell Precision BIOS versions before 2.18.2, contain an Out of Bounds write vulnerability. A local attacker with low privileges could potentially exploit this vulnerability leading to exposure of some SMRAM stack/data/code in System Management Mode, leading to arbitrary code execution or escalation of privilege.

Vulnerable Product Search on Vulmon Subscribe to Product

dell poweredge r740 firmware

dell poweredge r740xd firmware

dell poweredge r640 firmware

dell poweredge r940 firmware

dell poweredge r540 firmware

dell poweredge r440 firmware

dell poweredge t440 firmware

dell poweredge xr2 firmware

dell poweredge r740xd2 firmware

dell poweredge r840 firmware

dell poweredge r940xa firmware

dell poweredge t640 firmware

dell poweredge c6420 firmware

dell poweredge fc640 firmware

dell poweredge m640 firmware

dell poweredge mx740c firmware

dell poweredge mx840c firmware

dell poweredge c4140 firmware

dell dss 8440 firmware

dell poweredge xe2420 firmware

dell poweredge xe7420 firmware

dell poweredge xe7440 firmware

dell emc storage nx3240 firmware

dell emc storage nx3340 firmware

dell emc xc core 6420 firmware

dell emc xc core xc640 firmware

dell emc xc core xc740xd firmware

dell emc xc core xc740xd2 firmware

dell emc xc core xc940 firmware

dell emc xc core xcxr2 firmware