Vulnerability Details CVE-2026-0827
During an internal security assessment, a potential vulnerability was discovered in Lenovo Diagnostics and the HardwareScanAddin used in Lenovo Vantage that, during installation or when using hardware scan, could allow a local authenticated user to perform an arbitrary file write with elevated privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 11.4%
CVSS Severity
CVSS v3 Score 7.1
Products affected by CVE-2026-0827
-
cpe:2.3:a:lenovo:diagnostics:-
-
cpe:2.3:a:lenovo:diagnostics:4.35.4
-
cpe:2.3:a:lenovo:diagnostics:4.45.0
-
cpe:2.3:a:lenovo:hardware_scan:-
-
cpe:2.3:a:lenovo:hardware_scan:1.0.46.11