Description
Dell Edge Gateway 5200 (EGW) versions before 1.03.10 contain an operating system command injection vulnerability. A local malicious user may potentially exploit this vulnerability by using an SMI to bypass PMC mitigation and gain arbitrary code execution during SMM.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-37338 | Dell Edge Gateway 5200 (EGW) versions before 1.03.10 contain an operating system command injection vulnerability. A local malicious user may potentially exploit this vulnerability by using an SMI to bypass PMC mitigation and gain arbitrary code execution during SMM. |
References
| Link | Providers |
|---|---|
| https://www.dell.com/support/kbdoc/en-us/000202711 |
|
History
No history.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-09-16T23:35:34.303Z
Reserved: 2022-06-23T00:00:00.000Z
Link: CVE-2022-34383
No data.
Status : Modified
Published: 2022-08-31T20:15:08.747
Modified: 2024-11-21T07:09:24.340
Link: CVE-2022-34383
No data.
OpenCVE Enrichment
No data.
EUVD