2024-06-12 08:03:12 +00:00
{
"id" : "CVE-2024-0160" ,
"sourceIdentifier" : "security_alert@emc.com" ,
"published" : "2024-06-12T07:15:50.530" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-21T08:45:58.470" ,
"vulnStatus" : "Modified" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2024-06-12 08:03:12 +00:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Dell Client Platform contains an incorrect authorization vulnerability. An attacker with physical access to the system could potentially exploit this vulnerability by bypassing BIOS authorization to modify settings in the BIOS."
2024-06-13 20:03:12 +00:00
} ,
{
"lang" : "es" ,
"value" : "Dell Client Platform contiene una vulnerabilidad de autorizaci\u00f3n incorrecta. Un atacante con acceso f\u00edsico al sistema podr\u00eda explotar esta vulnerabilidad al eludir la autorizaci\u00f3n del BIOS para modificar la configuraci\u00f3n del BIOS."
2024-06-12 08:03:12 +00:00
}
] ,
"metrics" : {
"cvssMetricV31" : [
2024-09-25 16:03:26 +00:00
{
2024-12-08 03:06:42 +00:00
"source" : "security_alert@emc.com" ,
"type" : "Secondary" ,
2024-09-25 16:03:26 +00:00
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 6.8 ,
"baseSeverity" : "MEDIUM" ,
2024-09-25 16:03:26 +00:00
"attackVector" : "PHYSICAL" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2024-09-25 16:03:26 +00:00
} ,
"exploitabilityScore" : 0.9 ,
"impactScore" : 5.9
} ,
2024-06-12 08:03:12 +00:00
{
2024-12-08 03:06:42 +00:00
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
2024-06-12 08:03:12 +00:00
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 6.8 ,
"baseSeverity" : "MEDIUM" ,
2024-06-12 08:03:12 +00:00
"attackVector" : "PHYSICAL" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2024-06-12 08:03:12 +00:00
} ,
"exploitabilityScore" : 0.9 ,
"impactScore" : 5.9
}
]
} ,
"weaknesses" : [
{
"source" : "security_alert@emc.com" ,
2024-12-15 03:03:56 +00:00
"type" : "Primary" ,
2024-06-12 08:03:12 +00:00
"description" : [
{
"lang" : "en" ,
"value" : "CWE-863"
}
]
}
] ,
2024-09-25 16:03:26 +00:00
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:xps_17_9700_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.30.0" ,
"matchCriteriaId" : "872F0A38-BB2A-46A5-8F76-2289CF71F6F7"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:xps_17_9700:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "9CCAAEC8-7A39-403F-979F-AB8302E8385B"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:xps_15_9500_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.31.0" ,
"matchCriteriaId" : "3A404032-ED6B-4EBC-9CE4-B371DA306D59"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:xps_15_9500:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C3425631-E9E5-447E-AED9-1A3C46FD843C"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:vostro_7500_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.28.0" ,
"matchCriteriaId" : "D63F80E9-956E-4F59-BA68-EB6DE8E4B2EE"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:vostro_7500:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E63887A2-0A76-4CAD-A1D8-6896B1AC3768"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:precision_5750_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.30.0" ,
"matchCriteriaId" : "8AA16138-01C1-40EB-9F91-C861306B7FC6"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:precision_5750:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "00756063-B594-4683-AE87-56B79F91DB23"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:precision_5550_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.31.0" ,
"matchCriteriaId" : "A6AF407B-AE6F-46FA-8740-8DA502F484C7"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:precision_5550:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "953AC008-D651-4905-B07F-07CA83BD3932"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:latitude_3520_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.36.0" ,
"matchCriteriaId" : "49AA01E2-1948-43D1-8483-88FE18A248D9"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:latitude_3520:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B0F48635-F107-4399-91FE-CB7CA2B5E966"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:latitude_3510_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.29.0" ,
"matchCriteriaId" : "A64182FA-E71B-4F56-97E2-A248FB846D0C"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:latitude_3510:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "13CF7C33-6088-40DE-89D8-CB958C06F3D3"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:latitude_3420_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.36.0" ,
"matchCriteriaId" : "43F18C87-1CD6-4551-A91C-F2EFCFB7CE5F"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:latitude_3420:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7FB6E60F-F100-42BF-BC38-A38620EF8D2C"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:latitude_3410_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.29.0" ,
"matchCriteriaId" : "35979633-13C9-4D7B-BF50-54FBD8980737"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:latitude_3410:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "CCAC1D0B-6099-40E1-A8A4-493478569B5C"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:inspiron_7501_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.28.0" ,
"matchCriteriaId" : "27550A7C-DC53-4371-A31D-531FB459F1DB"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:inspiron_7501:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F8877DD5-AE9A-452D-AF5F-9E59B9D6DF99"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:inspiron_7500_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.28.0" ,
"matchCriteriaId" : "C3862880-0166-4972-B3AC-BAD0528CD252"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:inspiron_7500:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "549752BA-96AC-44AA-9475-BA407396D577"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:g7_7700_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.32.0" ,
"matchCriteriaId" : "AFA565B6-C79B-4D67-920F-D51E779FC70A"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:g7_7700:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "20046D13-2EE4-438C-8C98-089D018ADD44"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:g7_7500_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.32.0" ,
"matchCriteriaId" : "8503E891-4E04-467D-B4FA-421C467C4F3C"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:g7_7500:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7A7B6CD4-5129-46B5-8C72-6CE584F7FE9B"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:g5_5500_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.30.0" ,
"matchCriteriaId" : "6DE38ECE-412A-4545-97AF-1999E55C3C1E"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:g5_5500:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "81A8617F-56B1-4998-98CC-FA8C1D3DE011"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:dell:g3_3500_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.30.0" ,
"matchCriteriaId" : "E6DDB63B-BF11-4613-816E-6C097F986FAF"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:dell:g3_3500:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "79C0E8D8-FE8F-4718-8837-8C8FCACDB095"
}
]
}
]
}
] ,
2024-06-12 08:03:12 +00:00
"references" : [
{
"url" : "https://www.dell.com/support/kbdoc/en-us/000224763/dsa-2024-122" ,
2024-09-25 16:03:26 +00:00
"source" : "security_alert@emc.com" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://www.dell.com/support/kbdoc/en-us/000224763/dsa-2024-122" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2024-06-12 08:03:12 +00:00
}
]
}