PT-2022-6157 · Dell · Dell Bios

Yngweijw

·

Published

2022-10-11

·

Updated

2022-10-14

·

CVE-2022-32486

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell BIOS (affected versions not specified)
Description The issue is related to an improper input validation in Dell BIOS, which could be exploited by a local authenticated malicious user. This exploitation could potentially lead to arbitrary code execution in SMRAM by using an SMI.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2023-00254
CVE-2022-32486

Affected Products

Dell Bios