CVE-2023-3243

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jun 28, 2023
Updated: Aug 2, 2024
CWE ID 190

Summary

CVE-2023-28039 is a vulnerability affecting Dell BIOS. This issue involves improper input validation, which can allow a local, authenticated user with administrator privileges to manipulate UEFI variables. The exploitation of this vulnerability could result in significant system changes, potentially leading to unauthorized access or data loss. Dell has released a patch to address this issue, and it is recommended that users install the update as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Apple (iPhone OS)
  • Apple Watch
  • iPadOS
  • MacOS
  • WatchOS

Affected Vendors

  • Apple