CVE-2024-32860
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/06/2024
Last modified:
16/08/2024
Description
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.
Impact
Base Score 3.x
8.20
Severity 3.x
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:dell:alienware_area_51m_r2_firmware:*:*:*:*:*:*:*:* | 1.26.0 (excluding) | |
cpe:2.3:h:dell:alienware_area_51m_r2:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:dell:alienware_aurora_r11_firmware:*:*:*:*:*:*:*:* | 1.0.24 (excluding) | |
cpe:2.3:h:dell:alienware_aurora_r11:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:dell:alienware_aurora_r12_firmware:*:*:*:*:*:*:*:* | 1.1.25 (excluding) | |
cpe:2.3:h:dell:alienware_aurora_r12:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:dell:alienware_aurora_r13_firmware:*:*:*:*:*:*:*:* | 1.1.19 (including) | |
cpe:2.3:h:dell:alienware_aurora_r13:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:dell:alienware_aurora_r15_firmware:*:*:*:*:*:*:*:* | 1.1.12 (excluding) | |
cpe:2.3:h:dell:alienware_aurora_r15:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:dell:alienware_aurora_r15_amd_firmware:*:*:*:*:*:*:*:* | 1.13.0 (excluding) | |
cpe:2.3:h:dell:alienware_aurora_r15_amd:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:dell:alienware_aurora_ryzen_edition_r14_firmware:*:*:*:*:*:*:*:* | 2.18.0 (excluding) | |
cpe:2.3:h:dell:alienware_aurora_ryzen_edition_r14:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:dell:alienware_m15_r3_firmware:*:*:*:*:*:*:*:* | 1.27.0 (excluding) |
To consult the complete list of CPE names with products and versions, see this page