CVE-2022-31220

LOW

Dell BIOS - Privilege Escalation

Title source: llm

Description

Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated administrator user could potentially exploit this vulnerability in order to change the state of the system or cause unexpected failures.

Scores

CVSS v3 3.0
EPSS 0.0005
EPSS Percentile 15.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:L

Classification

CWE
CWE-252 CWE-1038
Status published

Affected Products (25)

dell/chengming_3900_firmware < 1.1.66
dell/inspiron_14_plus_7420_firmware < 1.2.0
dell/inspiron_16_plus_7620_firmware < 1.2.0
dell/inspiron_3910_firmware < 1.1.66
dell/inspiron_5320_firmware < 1.1.0
dell/inspiron_5420_firmware < 1.4.1
dell/inspiron_5620_firmware < 1.4.1
dell/inspiron_7420_firmware < 1.3.0
dell/inspiron_7620_firmware < 1.3.0
dell/optiplex_3000_firmware < 1.1.66
dell/optiplex_3000_thin_client_firmware < 1.0.7
dell/optiplex_5000_firmware < 1.3.62
dell/optiplex_5400_firmware < 1.0.13
dell/optiplex_7000_firmware < 1.3.62
dell/optiplex_7000_oem_firmware < 1.3.62
... and 10 more

Timeline

Published Sep 12, 2022
Tracked Since Feb 18, 2026