CVE-2023-44297: High severity dell poweredge r660xs firmware vulnerability
Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability. An unauthenticated physical attacker could potentially exploit this vulnerability, leading to information disclosure, information tampering, code execution, denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-44297?
CVE-2023-44297 has a high severity rating due to its potential for code execution and information disclosure by unauthenticated physical attackers.
How do I fix CVE-2023-44297?
To fix CVE-2023-44297, update the BIOS of affected Dell PowerEdge platforms to the latest version available from Dell.
Which systems are affected by CVE-2023-44297?
CVE-2023-44297 affects Dell PowerEdge platforms running BIOS version 1.4.4.
What type of vulnerability is CVE-2023-44297?
CVE-2023-44297 is a security vulnerability that exists due to active debug code in the BIOS of certain Dell systems.
Can CVE-2023-44297 be exploited remotely?
No, CVE-2023-44297 requires physical access to the vulnerable systems for exploitation.