VYPR

Edge Gateway 3000 Firmware

by Dell

CVEs (10)

  • CVE-2022-24420HigMar 11, 2022
    risk 0.53cvss 8.2epss 0.00

    Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.

  • CVE-2022-24416HigMar 11, 2022
    risk 0.53cvss 8.2epss 0.00

    Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.

  • CVE-2022-24415HigMar 11, 2022
    risk 0.53cvss 8.2epss 0.00

    Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.

  • CVE-2022-26861HigSep 6, 2022
    risk 0.51cvss 7.9epss 0.00

    Dell BIOS versions contain an Insecure Automated Optimization vulnerability. A local authenticated malicious user could exploit this vulnerability by sending malicious input via SMI to obtain arbitrary code execution during SMM.

  • CVE-2024-47238HigDec 12, 2024
    risk 0.49cvss 7.5epss 0.00

    Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary code execution.

  • CVE-2022-26860HigSep 6, 2022
    risk 0.49cvss 7.5epss 0.00

    Dell BIOS versions contain a stack-based buffer overflow vulnerability. A local attacker could exploit this vulnerability by sending malicious input via SMI to bypass security checks resulting in arbitrary code execution in SMM.

  • CVE-2023-28075MedAug 16, 2023
    risk 0.45cvss 6.9epss 0.00

    Dell BIOS contain a Time-of-check Time-of-use vulnerability in BIOS. A local authenticated malicious user with physical access to the system could potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI in order to gain arbitrary code…

  • CVE-2022-26859MedSep 6, 2022
    risk 0.40cvss 6.1epss 0.00

    Dell BIOS contains a race condition vulnerability. A local attacker could exploit this vulnerability by sending malicious input via SMI in order to bypass security checks during SMM.

  • CVE-2022-32484MedOct 12, 2022
    risk 0.36cvss 5.6epss 0.00

    Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileges may potentially exploit this vulnerability in order to modify a UEFI variable.

  • CVE-2024-0158MedJul 2, 2024
    risk 0.33cvss 5.1epss 0.00

    Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileges may potentially exploit this vulnerability to modify a UEFI variable, leading to denial of service and escalation of privileges