📦

latitude_9410

Vendor: dell

Actively Exploited 1 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 9 Remote Access
Total CVEs 70 Total Indexed
Avg. EPSS 1.08% Exploit Prob.
Latest CVE CVE-2024-52541 Feb 19

Security Vulnerability Index

Page 7 / 7
7.2 CVSS

Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local access to the system may potentially exploit this vulnerability to run arbitrary code and bypass UEFI restrictions.

EPSS: 0.29%
7.2 CVSS

Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local access to the system may potentially exploit this vulnerability to run arbitrary code and bypass UEFI restrictions.

EPSS: 0.28%
7.2 CVSS

Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local access to the system may potentially exploit this vulnerability to run arbitrary code and bypass UEFI restrictions.

EPSS: 0.26%
5.9 CVSS

Dell UEFI BIOS https stack leveraged by the Dell BIOSConnect feature and Dell HTTPS Boot feature contains an improper certificate validation vulnerability. A remote unauthenticated attacker may exploit this vulnerability using a person-in-the-middle attack which may lead to a denial of service and payload tampering.

EPSS: 0.63%
8.8 CVSS
CVE-2021-21551
Exploit Found

Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user access is required.

EPSS: 58.13%
7.1 CVSS

Dell Client Consumer and Commercial platforms include an improper authorization vulnerability in the Dell Manageability interface for which an unauthorized actor, with local system access with OS administrator privileges, could bypass the BIOS Administrator authentication to restore BIOS Setup configuration to default values.

EPSS: 0.29%