Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 73 respecto a la semana anterior
Críticas / altas1415▲ 65 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
4 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6) | 0.17% | — | Dell Edge Gateway 3200 FirmwareDell Edge Gateway 5200 FirmwareDell Precision 3930 Rack FirmwareDell Optiplex 7080 Firmware+6 | 24/7/2024 | 17/6/2026 | Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds read vulnerability. A local authenticated malicious user with high privileges could potentially exploit this vulnerability to read contents of stack memory and use this information for further exploits. | |
| Modificada | Alta (8.2) | 0.17% | — | Dell Edge Gateway 3200 FirmwareDell Edge Gateway 5200 Firmware | 10/7/2024 | 17/6/2026 | Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated malicious user with high privileges could potentially exploit this vulnerability leading to exposure of some code in System Management Mode, leading to arbitrary code execution or escalation of… | |
| Modificada | Alta (8.2) | 0.17% | — | Dell Edge Gateway 5000 FirmwareDell Edge Gateway 5100 FirmwareDell Edge Gateway 5200 FirmwareDell Edge Gateway 3200 Firmware+2 | 10/7/2024 | 17/6/2026 | Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated malicious user with high privileges could potentially exploit this vulnerability leading to exposure of some UEFI code, leading to arbitrary code execution or escalation of privilege. | |
| Modificada | Alta (8.2) | 0.45% | — | Dell Edge Gateway 5200 Firmware | 31/8/2022 | 17/6/2026 | Dell Edge Gateway 5200 (EGW) versions before 1.03.10 contain an operating system command injection vulnerability. A local malicious user may potentially exploit this vulnerability by using an SMI to bypass PMC mitigation and gain arbitrary code execution during SMM. |