CVE-2020-5326
CVE-2020-5326
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 6.1EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
21 feb 2020Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Affected Dell Client platforms contain a BIOS Setup configuration authentication bypass vulnerability in the pre-boot Intel Rapid Storage Response Technology (iRST) Manager menu. An attacker with physical access to the system could perform unauthorized changes to the BIOS Setup configuration settings without requiring the BIOS Admin password by selecting the Optimized Defaults option in the pre-boot iRST Manager.
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:H
Productos afectados
Dell · Dell Client Consumer and Commercial Platforms¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →