CVE-2023-48674
CVSS 3.1 Score 6.8 of 10 (medium)
Details
Published Mar 1, 2024
CWE ID 170
Summary
CVE-2023-48674 is a vulnerability affecting Dell Platform BIOS. The issue involves improper null termination, allowing a high privilege user with network access to send malicious data to the device. This could result in some services stopping to function. The vulnerability poses a potential risk, particularly in enterprise environments where BIOS updates may not be immediately applied, and could be exploited by attackers to disrupt critical systems. It is strongly recommended that users of Dell devices apply the necessary patches to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.