CVE Feed

    Dashboard / CVE / CVE-2024-25942

    CVE-2024-25942

    Dell PowerEdge Server BIOS contains an Improper SMM communication buffer verification vulnerability. A physical high privileged attacker could potentially exploit this vulnerability leading to arbitrary writes to SMRAM.

    Published:Mar 19, 2024
    Last Modified:Feb 4, 2025
    EPS:Mar 19, 2024
    EPSS Score:0.00033
    CVSS Score:4.4

    Affected Products

    Vendor
    Dell
    Product
    Nx3230
    Vendor
    Dell
    Product
    Nx3230 Firmware
    Vendor
    Dell
    Product
    Nx3330
    Vendor
    Dell
    Product
    Nx3330 Firmware
    Vendor
    Dell
    Product
    Poweredge C4130
    Vendor
    Dell
    Product
    Poweredge C4130 Firmware
    Vendor
    Dell
    Product
    Poweredge C6320
    Vendor
    Dell
    Product
    Poweredge C6320 Firmware
    Vendor
    Dell
    Product
    Poweredge Fc430
    Vendor
    Dell
    Product
    Poweredge Fc430 Firmware
    Vendor
    Dell
    Product
    Poweredge Fc630
    Vendor
    Dell
    Product
    Poweredge Fc630 Firmware
    Vendor
    Dell
    Product
    Poweredge Fc830
    Vendor
    Dell
    Product
    Poweredge Fc830 Firmware
    Vendor
    Dell
    Product
    Poweredge M630
    Vendor
    Dell
    Product
    Poweredge M630 \(pe Vrtx\)
    Vendor
    Dell
    Product
    Poweredge M630 \(pe Vrtx\) Firmware
    Vendor
    Dell
    Product
    Poweredge M630 Firmware
    Vendor
    Dell
    Product
    Poweredge M830
    Vendor
    Dell
    Product
    Poweredge M830 \(pe Vrtx\)
    Vendor
    Dell
    Product
    Poweredge M830 \(pe Vrtx\) Firmware
    Vendor
    Dell
    Product
    Poweredge M830 Firmware
    Vendor
    Dell
    Product
    Poweredge R430
    Vendor
    Dell
    Product
    Poweredge R430 Firmware
    Vendor
    Dell
    Product
    Poweredge R530
    Vendor
    Dell
    Product
    Poweredge R530 Firmware
    Vendor
    Dell
    Product
    Poweredge R630
    Vendor
    Dell
    Product
    Poweredge R630 Firmware
    Vendor
    Dell
    Product
    Poweredge R730
    Vendor
    Dell
    Product
    Poweredge R730 Firmware
    Vendor
    Dell
    Product
    Poweredge R730xd
    Vendor
    Dell
    Product
    Poweredge R730xd Firmware
    Vendor
    Dell
    Product
    Poweredge R830
    Vendor
    Dell
    Product
    Poweredge R830 Firmware
    Vendor
    Dell
    Product
    Poweredge R930
    Vendor
    Dell
    Product
    Poweredge R930 Firmware
    Vendor
    Dell
    Product
    Poweredge T430
    Vendor
    Dell
    Product
    Poweredge T430 Firmware
    Vendor
    Dell
    Product
    Poweredge T630
    Vendor
    Dell
    Product
    Poweredge T630 Firmware
    Vendor
    Dell
    Product
    Xc430
    Vendor
    Dell
    Product
    Xc430 Firmware
    Vendor
    Dell
    Product
    Xc630
    Vendor
    Dell
    Product
    Xc630 Firmware
    Vendor
    Dell
    Product
    Xc6320
    Vendor
    Dell
    Product
    Xc6320 Firmware
    Vendor
    Dell
    Product
    Xc730
    Vendor
    Dell
    Product
    Xc730 Firmware
    Vendor
    Dell
    Product
    Xc730xd
    Vendor
    Dell
    Product
    Xc730xd Firmware

    Exploits

    No exploit reference

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High