HIGH🇵🇱 Wersja polska

CVE-2023-43088

CVSS 7.2v3.1pub. 2023-12-22upd. 2024-11-21

Dell Client BIOS contains a pre-boot direct memory access (DMA) vulnerability. An authenticated attacker with physical access to the system may potentially exploit this vulnerability in order to execute arbitrary code on the device.

CVSS Vector
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
  • Dell Precision 7865 Tower

    HW
    Dell
    all versions
  • Dell Precision 7865 Tower Firmware

    OS
    Dell
    < 1.5.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCE
CWE
References

Related vulnerabilities

CVE-2025-29989LOW3.1same product

Dell Client Platform BIOS zawiera podatność polegającą na możliwości zmiany numeru wersji bezpieczeństwa na st...

CVE-2026-22769CRITICAL10.0⚠ KEVPL ✓same vendor

Dell RecoverPoint for VMs — zahardkodowane dane uwierzytelniające (RCE, root)

CVE-2026-67261CRITICAL9.8PL ✓same vendor

Dell Virtual Storage Integrator – OS Command Injection z uprawnieniami root (RCE bez uwierzytelnienia)

CVE-2026-54489CRITICAL9.1PL ✓same vendor

Dell Virtual Storage Integrator — ujawnienie sesji i przejęcie konta

CVE-2026-46738CRITICAL9.1PL ✓same vendor

Dell PowerProtect Data Manager – Improper Input Validation w REST API (privilege escalation)