SEL-3350
cpe:2.3:h:selinc:sel-3350:*:*:*:*:*:*:*
- < 1.3.49152.117
- < 2.6.49152.98
A vulnerability exists in SEL BIOS packages prior to versions 1.3.49152.117 and 2.6.49152.98, allowing local attackers to bypass password authentication and alter password-protected BIOS settings. This is achieved by importing a BIOS settings file that lacks a password, exploiting the absence of proper validation.
Exploitation of this vulnerability allows for unauthorized changes to BIOS settings, potentially leading to broader system security risks.
Users can update to SEL BIOS versions 1.3.49152.117 or 2.6.49152.98 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.