Vulnerabilities
Vulnerable Software
Lenovo:  Security Vulnerabilities
A buffer overflow exists in the Remote Presence subsystem which can potentially allow valid, authenticated users to cause a recoverable subsystem denial of service.
CVSS Score
7.2
EPSS Score
0.006
Published
2023-01-30
The Remote Mount feature can potentially be abused by valid, authenticated users to make connections to internal services that may not normally be accessible to users. Internal service access controls, as applicable, remain in effect.
CVSS Score
2.7
EPSS Score
0.002
Published
2023-01-30
A potential vulnerability in a driver used during manufacturing process on the Ideapad Y700-14ISK that was mistakenly not deactivated may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.
CVSS Score
6.7
EPSS Score
0.0
Published
2023-01-26
A buffer overflow in the SystemLoadDefaultDxe driver in some Lenovo Notebook products may allow an attacker with local privileges to execute arbitrary code.
CVSS Score
6.7
EPSS Score
0.0
Published
2023-01-26
A buffer overflow in the SystemBootManagerDxe driver in some Lenovo Notebook products may allow an attacker with local privileges to execute arbitrary code.
CVSS Score
6.7
EPSS Score
0.0
Published
2023-01-26
A buffer overflow in the ReadyBootDxe driver in some Lenovo Notebook products may allow an attacker with local privileges to execute arbitrary code.
CVSS Score
6.7
EPSS Score
0.0
Published
2023-01-26
A potential vulnerability in the WMI Setup driver on some consumer Lenovo Notebook devices may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.
CVSS Score
6.7
EPSS Score
0.0
Published
2023-01-23
A denial-of-service vulnerability has been identified in Lenovo Safecenter that could allow a local user to crash the application.
CVSS Score
6.2
EPSS Score
0.0
Published
2023-01-23
An incorrect default permissions vulnerability in Lenovo Leyun cloud music application could allow denial of service.
CVSS Score
5.5
EPSS Score
0.001
Published
2023-01-20
A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS PersistenceConfigDxe driver that could allow a local attacker with elevated privileges to cause information disclosure.
CVSS Score
6.7
EPSS Score
0.001
Published
2023-01-05


Contact Us

Shodan ® - All rights reserved