Aller au contenu

Fiche vulnérabilité

CVE-2022-34383 : faille élevée dell edge gateway 5200 firmware (CVSS 8.2)

Description

Dell Edge Gateway 5200 (EGW) versions before 1.03.10 contain an operating system command injection vulnerability. A local malicious user may potentially exploit this vulnerability by using an SMI to bypass PMC mitigation and gain arbitrary code execution during SMM.

En bref

Sévérité
Élevée (CVSS 8.2)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
31 août 2022
Dernière mise à jour
17 juin 2026

Produits concernés

  • dell edge gateway 5200 firmware

Références

Rechercher une autre vulnérabilité dans la base CVE