CVE-2023-28042

CVSS Score of 10 (low)

Details

Published Jun 23, 2023
Updated: Jun 28, 2023
CWE ID 20

Summary

CVE-2023-28042 is an improper input validation vulnerability found in Dell BIOS, affecting multiple products including p6_db0, izTlNC, lmJi4r, and more. The vulnerability can be exploited by a local authenticated malicious user with administrator privileges to modify a UEFI variable. The risk score for this vulnerability is 26, indicating a medium severity level. Remediation should involve updating the affected Dell BIOS versions to the latest available version. This vulnerability poses potential danger to organizations as it allows unauthorized modification of UEFI variables, which can lead to unauthorized access or control over the affected systems.

Share

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2023-28042 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options