CVE-2024-0160

medium

Description

Dell Client Platform contains an incorrect authorization vulnerability. An attacker with physical access to the system could potentially exploit this vulnerability by bypassing BIOS authorization to modify settings in the BIOS.

References

https://www.dell.com/support/kbdoc/en-us/000224763/dsa-2024-122

https://www.dell.com/support/kbdoc/en-us/000224763/dsa-2024-122

Details

Source: Mitre, NVD

Published: 2024-06-12

Updated: 2024-06-13

Risk Information

CVSS v2

Base Score: 7.2

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 6.8

Vector: CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Medium