Vulnerability Description
Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability. An unauthenticated physical attacker could potentially exploit this vulnerability, leading to information tampering, code execution, denial of service.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Poweredge R660 Firmware | 1.4.4 |
| Dell | Poweredge R660 | - |
| Dell | Poweredge R760 Firmware | 1.4.4 |
| Dell | Poweredge R760 | - |
| Dell | Poweredge C6620 Firmware | 1.4.4 |
| Dell | Poweredge C6620 | - |
| Dell | Poweredge Mx760C Firmware | 1.4.4 |
| Dell | Poweredge Mx760C | - |
| Dell | Poweredge R860 Firmware | 1.4.4 |
| Dell | Poweredge R860 | - |
| Dell | Poweredge R960 Firmware | 1.4.4 |
| Dell | Poweredge R960 | - |
| Dell | Poweredge Hs5610 Firmware | 1.4.4 |
| Dell | Poweredge Hs5610 | - |
| Dell | Poweredge Hs5620 Firmware | 1.4.4 |
| Dell | Poweredge Hs5620 | - |
| Dell | Poweredge R660Xs Firmware | 1.4.4 |
| Dell | Poweredge R660Xs | - |
| Dell | Poweredge R760Xs Firmware | 1.4.4 |
| Dell | Poweredge R760Xs | - |
Related Weaknesses (CWE)
References
- https://www.dell.com/support/kbdoc/en-us/000220047/dsa-2023-429-security-update-Vendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000220047/dsa-2023-429-security-update-Vendor Advisory
FAQ
What is CVE-2023-44298?
CVE-2023-44298 is a vulnerability with a CVSS score of 3.6 (LOW). Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability. An unauthenticated physical attacker could potentially exploit thi...
How severe is CVE-2023-44298?
CVE-2023-44298 has been rated LOW with a CVSS base score of 3.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-44298?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Poweredge R660 Firmware, Dell Poweredge R660, Dell Poweredge R760 Firmware, Dell Poweredge R760, Dell Poweredge C6620 Firmware.