CVE-2024-0160

CVSS 3.1 Score 6.8 of 10 (medium)

Details

Published Jun 12, 2024
Updated: Jun 13, 2024
CWE ID 863

Summary

CVE-2024-0160 is a vulnerability affecting Dell Client Platform. This issue involves an incorrect authorization mechanism, enabling an attacker with physical access to the system to bypass BIOS authorization. By exploiting this vulnerability, the attacker can modify settings in the BIOS, potentially compromising the security of the entire system. The impact of this vulnerability is significant, as unauthorized access to BIOS settings can lead to serious data breaches or system manipulation. Dell has not yet released a patch for this vulnerability, making it critical for organizations to secure their systems against potential attacks through other means, such as access control and physical security measures.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share