CVE-2023-48674

CVSS 3.1 Score 6.8 of 10 (medium)

Details

Published Mar 1, 2024
CWE ID 170

Summary

CVE-2023-48674 is a vulnerability affecting Dell Platform BIOS. The issue involves improper null termination, allowing a high privilege user with network access to send malicious data to the device. This could result in some services stopping to function. The vulnerability poses a potential risk, particularly in enterprise environments where BIOS updates may not be immediately applied, and could be exploited by attackers to disrupt critical systems. It is strongly recommended that users of Dell devices apply the necessary patches to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share