CVE-2015-6856 Information
Feb 14, 2021
cve
Description
Dell Pre-Boot Authentication Driver (PBADRV.sys) 1.0.1.5 allows local users to write to arbitrary physical memory locations and gain privileges via a 0x0022201c IOCTL call.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
http://packetstormsecurity.com/files/134987/Dell-Authentication-Driver-Uncontrolled-Write.html http://seclists.org/fulldisclosure/2015/Dec/81 http://www.securityfocus.com/archive/1/537161/100/0/threaded http://www.securityfocus.com/bid/79643 https://www.korelogic.com/Resources/Advisories/KL-001-2015-008.txt
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.8
Share on: