CVE-2024-32860

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/06/2024
Last modified:
16/08/2024

Description

Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dell:alienware_area_51m_r2_firmware:*:*:*:*:*:*:*:* 1.26.0 (excluding)
cpe:2.3:h:dell:alienware_area_51m_r2:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:alienware_aurora_r11_firmware:*:*:*:*:*:*:*:* 1.0.24 (excluding)
cpe:2.3:h:dell:alienware_aurora_r11:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:alienware_aurora_r12_firmware:*:*:*:*:*:*:*:* 1.1.25 (excluding)
cpe:2.3:h:dell:alienware_aurora_r12:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:alienware_aurora_r13_firmware:*:*:*:*:*:*:*:* 1.1.19 (including)
cpe:2.3:h:dell:alienware_aurora_r13:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:alienware_aurora_r15_firmware:*:*:*:*:*:*:*:* 1.1.12 (excluding)
cpe:2.3:h:dell:alienware_aurora_r15:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:alienware_aurora_r15_amd_firmware:*:*:*:*:*:*:*:* 1.13.0 (excluding)
cpe:2.3:h:dell:alienware_aurora_r15_amd:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:alienware_aurora_ryzen_edition_r14_firmware:*:*:*:*:*:*:*:* 2.18.0 (excluding)
cpe:2.3:h:dell:alienware_aurora_ryzen_edition_r14:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:alienware_m15_r3_firmware:*:*:*:*:*:*:*:* 1.27.0 (excluding)


References to Advisories, Solutions, and Tools