Dell PowerEdge security bypass | CVE-2024-25942

NAME
__________
Dell PowerEdge security bypass

Platforms Affected:
Dell PowerEdge R730
Dell PowerEdge R730xd
Dell PowerEdge R630
Dell PowerEdge R930
Dell PowerEdge M630
Dell PowerEdge FC630

Risk Level:
4.4

Exploitability:
Unproven

Consequences:
Bypass Security

DESCRIPTION
__________

Dell PowerEdge could allow a physical authenticated attacker to bypass security restrictions, caused by improper SMM communication buffer verification in BIOS. By sending a specially crafted request, an attacker could exploit this vulnerability to perform arbitrary writes to SMRAM.

CVSS 3.0 Information
__________

Privileges Required:
High

User Interaction:
None

Scope:
Changed

Access Vector:
Physical


A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below

To keep up to date follow us on the below channels.