CVE-2023-28063

MEDIUM

Dell Optiplex 3000 Micro Firmware - Denial of Service

Title source: rule

Description

Dell BIOS contains a Signed to Unsigned Conversion Error vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to denial of service.

Scores

CVSS v3 6.7
EPSS 0.0001
EPSS Percentile 2.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-681 CWE-195
Status published

Affected Products (50)

dell/optiplex_3000_micro_firmware
dell/optiplex_3000_small_form_factor_firmware
dell/optiplex_3000_tower_firmware
dell/optiplex_5000_micro_firmware
dell/optiplex_5000_small_form_factor_firmware
dell/optiplex_5000_tower_firmware
dell/optiplex_7000_micro_firmware
dell/optiplex_7000_small_form_factor_firmware
dell/optiplex_7000_tower_firmware
dell/optiplex_7000_xe_micro_firmware
dell/optiplex_5090_micro_firmware
dell/optiplex_5090_small_form_factor_firmware
dell/optiplex_5090_tower_firmware
dell/optiplex_micro_7010_firmware
dell/optiplex_micro_plus_7010_firmware
... and 35 more

Timeline

Published Feb 06, 2024
Tracked Since Feb 18, 2026