CVE Feed

    Dashboard / CVE / CVE-2022-24417

    CVE-2022-24417

    Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.

    Published:May 26, 2022
    Last Modified:Nov 21, 2024
    EPS:May 26, 2022
    EPSS Score:0.00048
    CVSS Score:7.5

    Affected Products

    Vendor
    Dell
    Product
    Dell G5 5505
    Vendor
    Dell
    Product
    Dell G5 5505 Firmware
    Vendor
    Dell
    Product
    Inspiron 22-3275
    Vendor
    Dell
    Product
    Inspiron 22-3275 Firmware
    Vendor
    Dell
    Product
    Inspiron 24-3475
    Vendor
    Dell
    Product
    Inspiron 24-3475 Firmware
    Vendor
    Dell
    Product
    Inspiron 27 7775
    Vendor
    Dell
    Product
    Inspiron 27 7775 Firmware
    Vendor
    Dell
    Product
    Inspiron 3180
    Vendor
    Dell
    Product
    Inspiron 3180 Firmware
    Vendor
    Dell
    Product
    Inspiron 3185
    Vendor
    Dell
    Product
    Inspiron 3185 Firmware
    Vendor
    Dell
    Product
    Inspiron 3195
    Vendor
    Dell
    Product
    Inspiron 3195 Firmware
    Vendor
    Dell
    Product
    Inspiron 3505
    Vendor
    Dell
    Product
    Inspiron 3505 Firmware
    Vendor
    Dell
    Product
    Inspiron 3515
    Vendor
    Dell
    Product
    Inspiron 3515 Firmware
    Vendor
    Dell
    Product
    Inspiron 3585
    Vendor
    Dell
    Product
    Inspiron 3585 Firmware
    Vendor
    Dell
    Product
    Inspiron 3595
    Vendor
    Dell
    Product
    Inspiron 3595 Firmware
    Vendor
    Dell
    Product
    Inspiron 3785
    Vendor
    Dell
    Product
    Inspiron 3785 Firmware
    Vendor
    Dell
    Product
    Inspiron 5405
    Vendor
    Dell
    Product
    Inspiron 5405 Firmware
    Vendor
    Dell
    Product
    Inspiron 5415
    Vendor
    Dell
    Product
    Inspiron 5415 Firmware
    Vendor
    Dell
    Product
    Inspiron 5485
    Vendor
    Dell
    Product
    Inspiron 5485 Firmware
    Vendor
    Dell
    Product
    Inspiron 5505
    Vendor
    Dell
    Product
    Inspiron 5505 Firmware
    Vendor
    Dell
    Product
    Inspiron 5515
    Vendor
    Dell
    Product
    Inspiron 5515 Firmware
    Vendor
    Dell
    Product
    Inspiron 5575
    Vendor
    Dell
    Product
    Inspiron 5575 Firmware
    Vendor
    Dell
    Product
    Inspiron 5585
    Vendor
    Dell
    Product
    Inspiron 5585 Firmware
    Vendor
    Dell
    Product
    Inspiron 5675
    Vendor
    Dell
    Product
    Inspiron 5675 Firmware
    Vendor
    Dell
    Product
    Inspiron 5775
    Vendor
    Dell
    Product
    Inspiron 5775 Firmware
    Vendor
    Dell
    Product
    Inspiron 7375
    Vendor
    Dell
    Product
    Inspiron 7375 Firmware
    Vendor
    Dell
    Product
    Inspiron 7405
    Vendor
    Dell
    Product
    Inspiron 7405 Firmware
    Vendor
    Dell
    Product
    Inspiron 7415
    Vendor
    Dell
    Product
    Inspiron 7415 Firmware
    Vendor
    Dell
    Product
    Vostro 3405
    Vendor
    Dell
    Product
    Vostro 3405 Firmware
    Vendor
    Dell
    Product
    Vostro 3515
    Vendor
    Dell
    Product
    Vostro 3515 Firmware
    Vendor
    Dell
    Product
    Vostro 5415
    Vendor
    Dell
    Product
    Vostro 5415 Firmware
    Vendor
    Dell
    Product
    Vostro 5515
    Vendor
    Dell
    Product
    Vostro 5515 Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High