CVE-2022-26862: Input Validation
Prior Dell BIOS versions contain an Input Validation vulnerability. A locally authenticated malicious user could potentially exploit this vulnerability by sending malicious input to an SMI in order to bypass security controls in SMM.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-26862?
CVE-2022-26862 is rated as medium severity due to its potential to allow a local attacker to bypass security controls.
How do I fix CVE-2022-26862?
To fix CVE-2022-26862, users should upgrade to the latest firmware version specified in the Dell advisory.
What types of systems are affected by CVE-2022-26862?
CVE-2022-26862 affects various Dell systems including Alienware m15 R5 and G15 5515 with certain firmware versions.
Can a remote attacker exploit CVE-2022-26862?
No, CVE-2022-26862 can only be exploited by a locally authenticated user, not remotely.
What happens if CVE-2022-26862 is exploited?
If exploited, CVE-2022-26862 could allow an attacker to compromise system security by evading certain security controls.