CVE-2022-22567

Description

Select Dell Client Commercial and Consumer platforms are vulnerable to an insufficient verification of data authenticity vulnerability. An authenticated malicious user may exploit this vulnerability in order to install modified BIOS firmware.

Risk Information

Base Score
5.1
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:L
EPSS Score
Exploitation Probability
0.022

Associated Vulnerability

VulnerabilityOS Platform
Insufficient Verification of Data Authenticity Vulnerability (CVE-2022-22567)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234