Dell Edge Gateway 5200 (EGW) versions before 1.03.10 contain an operating system command injection vulnerability. A local malicious user may potentially exploit this vulnerability by using an SMI to bypass PMC mitigation and gain arbitrary code execution during SMM.
2022-08-31T20:15:08.747
2024-11-21T07:09:24.340
Modified
CVSSv3.1: 8.1 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | dell | edge_gateway_5200_firmware | < 1.03.10 | Yes |
Hardware | dell | edge_gateway_5200 | - | No |