Vulnerability Details CVE-2021-3922
A race condition vulnerability was reported in IMController, a software component of Lenovo System Interface Foundation, prior to version 1.1.20.3 that could allow a local attacker to connect and interact with the IMController child process' named pipe.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 61.0%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 4.4
Products affected by CVE-2021-3922
-
cpe:2.3:a:lenovo:system_interface_foundation:-
-
cpe:2.3:a:lenovo:system_interface_foundation:1.0.66.0
-
cpe:2.3:a:lenovo:system_interface_foundation:1.1.18.3
-
cpe:2.3:a:lenovo:system_interface_foundation:1.1.19.3
-
cpe:2.3:a:lenovo:system_interface_foundation:1.1.19.5