Vulnerability Details CVE-2022-3432
A potential vulnerability in a driver used during manufacturing process on the Ideapad Y700-14ISK that was mistakenly not deactivated may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 21.2%
CVSS Severity
CVSS v3 Score 6.7
Products affected by CVE-2022-3432
-
cpe:2.3:h:lenovo:ideapad_y700-14isk:-
-
cpe:2.3:o:lenovo:ideapad_y700-14isk_firmware:-