CVE-2024-38483

Dell BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dell:latitude_5290_2-in-1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5290_2-in-1:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:dell:precision_3420_tower_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_3420:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:dell:precision_3620_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_3620_tower:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:dell:wyse_7040_thin_client_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_7040_thin_client:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:dell:precision_7720_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_7720:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:dell:precision_7520_firmware:1.37.0:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_7520:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:dell:precision_5530_2-in-1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_5530_2-in-1:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:dell:precision_5520_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_5520:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:dell:precision_3520_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_3520:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:dell:optiplex_7450_all-in-one_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:optiplex_7450_all-in-one:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:dell:optiplex_5050_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:optiplex_5050:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:dell:optiplex_3050_all-in-one_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:optiplex_3050_all-in-one:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:dell:optiplex_3050_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:optiplex_3050:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:dell:latitude_7490_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7490:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:dell:latitude_7480_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7480:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:dell:latitude_7424_rugged_extreme_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7424_rugged_extreme:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:dell:latitude_7414_rugged_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7414_rugged:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:dell:latitude_7390_2-in-1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7390_2-in-1:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:dell:latitude_7390_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7390:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:dell:latitude_7380_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7380:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:dell:latitude_7290_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7290:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:dell:latitude_7285_2-in-1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7285_2-in-1:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:dell:latitude_7280_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7280:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:dell:latitude_7212_rugged_extreme_tablet_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_7212_rugged_extreme_tablet:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:dell:latitude_5590_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5590:-:*:*:*:*:*:*:*

Configuration 26 (hide)

AND
cpe:2.3:o:dell:latitude_5580_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5580:-:*:*:*:*:*:*:*

Configuration 27 (hide)

AND
cpe:2.3:o:dell:latitude_5490_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5490:-:*:*:*:*:*:*:*

Configuration 28 (hide)

AND
cpe:2.3:o:dell:latitude_5488_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5488:-:*:*:*:*:*:*:*

Configuration 29 (hide)

AND
cpe:2.3:o:dell:latitude_5480_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5480:-:*:*:*:*:*:*:*

Configuration 30 (hide)

AND
cpe:2.3:o:dell:latitude_5424_rugged_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5424_rugged:-:*:*:*:*:*:*:*

Configuration 31 (hide)

AND
cpe:2.3:o:dell:latitude_5420_rugged_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5420_rugged:-:*:*:*:*:*:*:*

Configuration 32 (hide)

AND
cpe:2.3:o:dell:latitude_5414_rugged_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5414_rugged:-:*:*:*:*:*:*:*

Configuration 33 (hide)

AND
cpe:2.3:o:dell:latitude_5400_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5400:-:*:*:*:*:*:*:*

Configuration 34 (hide)

AND
cpe:2.3:o:dell:latitude_5290_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5290:-:*:*:*:*:*:*:*

Configuration 35 (hide)

AND
cpe:2.3:o:dell:latitude_5288_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5288:-:*:*:*:*:*:*:*

Configuration 36 (hide)

AND
cpe:2.3:o:dell:latitude_5280_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_5280:-:*:*:*:*:*:*:*

Configuration 37 (hide)

AND
cpe:2.3:o:dell:latitude_3390_2-in-1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_3390_2-in-1:-:*:*:*:*:*:*:*

Configuration 38 (hide)

AND
cpe:2.3:o:dell:latitude_3300_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_3300:-:*:*:*:*:*:*:*

Configuration 39 (hide)

AND
cpe:2.3:o:dell:latitude_13_3380_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_13_3380:-:*:*:*:*:*:*:*

Configuration 40 (hide)

AND
cpe:2.3:o:dell:latitude_12_rugged_extreme_7214_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_12_rugged_extreme_7214:-:*:*:*:*:*:*:*

Configuration 41 (hide)

AND
cpe:2.3:o:dell:embedded_box_pc_5000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:embedded_box_pc_5000:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-08-14 10:15

Updated : 2024-09-18 19:19


NVD link : CVE-2024-38483

Mitre link : CVE-2024-38483

CVE.ORG link : CVE-2024-38483


JSON object : View

Products Affected

dell

  • latitude_5590_firmware
  • latitude_5420_rugged_firmware
  • optiplex_7450_all-in-one_firmware
  • precision_7520
  • precision_3620_tower
  • precision_3520
  • latitude_5490_firmware
  • latitude_7490
  • embedded_box_pc_5000
  • precision_7720
  • latitude_5480_firmware
  • optiplex_3050_all-in-one_firmware
  • latitude_5288
  • latitude_7390_2-in-1
  • latitude_5480
  • latitude_5290_2-in-1_firmware
  • wyse_7040_thin_client
  • precision_3520_firmware
  • latitude_7380_firmware
  • optiplex_3050_firmware
  • latitude_5490
  • latitude_5400
  • latitude_3300
  • precision_5530_2-in-1
  • latitude_3390_2-in-1
  • latitude_5290_firmware
  • precision_5520
  • precision_5530_2-in-1_firmware
  • latitude_5590
  • precision_3420
  • latitude_7285_2-in-1
  • latitude_13_3380_firmware
  • precision_5520_firmware
  • optiplex_3050
  • wyse_7040_thin_client_firmware
  • latitude_5280
  • optiplex_3050_all-in-one
  • latitude_5424_rugged
  • latitude_7285_2-in-1_firmware
  • latitude_3390_2-in-1_firmware
  • latitude_7490_firmware
  • latitude_7390
  • latitude_7414_rugged_firmware
  • latitude_7424_rugged_extreme_firmware
  • latitude_5414_rugged
  • latitude_7290_firmware
  • embedded_box_pc_5000_firmware
  • latitude_5414_rugged_firmware
  • latitude_5488_firmware
  • latitude_7212_rugged_extreme_tablet_firmware
  • latitude_3300_firmware
  • latitude_7290
  • latitude_7280_firmware
  • optiplex_5050_firmware
  • latitude_5290_2-in-1
  • latitude_7480_firmware
  • latitude_5580
  • latitude_5290
  • latitude_7212_rugged_extreme_tablet
  • latitude_7390_firmware
  • latitude_7480
  • latitude_7380
  • latitude_5424_rugged_firmware
  • latitude_12_rugged_extreme_7214
  • precision_7720_firmware
  • latitude_5400_firmware
  • latitude_7424_rugged_extreme
  • optiplex_7450_all-in-one
  • latitude_5488
  • latitude_7414_rugged
  • latitude_5420_rugged
  • latitude_5580_firmware
  • latitude_5288_firmware
  • latitude_5280_firmware
  • precision_3620_firmware
  • optiplex_5050
  • precision_3420_tower_firmware
  • latitude_7390_2-in-1_firmware
  • latitude_13_3380
  • precision_7520_firmware
  • latitude_7280
  • latitude_12_rugged_extreme_7214_firmware
CWE
CWE-20

Improper Input Validation

NVD-CWE-noinfo