lenovo
482 tracked vulnerabilities.
CVE-2017-3763
MEDIUM
Lenovo XClarity Administrator < 1.3.2 - Unauthenticated Credential Exposure via File System Access
Sep 22, 2017
CVSS 6.7
EPSS 0.00
CVE-2017-3746
HIGH
ThinkPad USB 3.0 Ethernet Adapter - Privilege Escalation
Aug 29, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-3756
HIGH
Lenovo Active Protection System <1.82.0.17 - Privilege Escalation
Aug 18, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-3753
MEDIUM
Lenovo UEFI Firmware - Authenticated Code Injection via AMI BIOS
Aug 10, 2017
CVSS 6.8
EPSS 0.00
CVE-2017-3751
HIGH
ThinkPad Compact USB Keyboard with TrackPoint <1.5.5.0 - Code Injec...
Aug 10, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-3752
HIGH
IBM and Lenovo Fabric Firmware - OSPF Routing Table Manipulation via Improper Input Validation
Aug 09, 2017
CVSS 8.2
EPSS 0.00
CVE-2017-3754
MEDIUM
Lenovo Notebook Systems - Privilege Escalation
Jul 17, 2017
CVSS 6.7
EPSS 0.00
CVE-2017-3742
MEDIUM
Lenovo Connect2 <4.2.5.4885-4.2.5.3071 - Info Disclosure
Jul 17, 2017
CVSS 4.8
EPSS 0.00
CVE-2017-3747
MEDIUM
Lenovo Nerve Center - Privilege Escalation
Jun 29, 2017
CVSS 5.5
EPSS 0.00
CVE-2017-3745
HIGH
Lenovo XClarity Administrator <1.3.0 - Info Disclosure
Jun 20, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-3744
MEDIUM
Lenovo IMM2 Firmware < 4.9 - Sensitive Information Disclosure in FFDC Service Log
Jun 20, 2017
CVSS 6.5
EPSS 0.00
CVE-2017-3743
HIGH
Lenovo ToolsCenter Advanced Settings Utility - Info Disclosure
Jun 20, 2017
CVSS 7.5
EPSS 0.00
CVE-2017-3741
LOW
Lenovo Power Management <1.67.12.24 - Info Disclosure
Jun 04, 2017
CVSS 3.3
EPSS 0.00
CVE-2017-3740
MEDIUM
Lenovo Active Protection System <1.82.0.14 - Privilege Escalation
Jun 04, 2017
CVSS 5.5
EPSS 0.00
CVE-2017-5638
CRITICAL
KEVNUCLEI
Apache Struts 2.3.x < 2.3.32 and 2.5.x < 2.5.10.1 - Remote Code Execution via Jakarta Multipart Parser
Mar 11, 2017
CVSS 9.8
EPSS 0.94
CVE-2016-8231
HIGH
Lenovo Service Bridge <4 - Code Injection
Jun 04, 2017
CVSS 7.5
EPSS 0.00
CVE-2016-8230
HIGH
Lenovo Service Bridge <4 - Info Disclosure
Jun 04, 2017
CVSS 7.5
EPSS 0.00
CVE-2016-8229
HIGH
Lenovo Service Bridge < 4 - Cross-Site Request Forgery via DHCP Server
Jun 04, 2017
CVSS 8.8
EPSS 0.00
CVE-2016-8228
HIGH
Lenovo Service Bridge <4 - Privilege Escalation
Jun 04, 2017
CVSS 7.8
EPSS 0.00
CVE-2016-1876
HIGH
Lenovo Solution Center <3.3.0002 - Privilege Escalation
May 23, 2017
CVSS 7.8
EPSS 0.00
CVE-2016-8237
HIGH
Lenovo Updates - Remote Code Execution
Apr 10, 2017
CVSS 8.1
EPSS 0.02
CVE-2016-8235
HIGH
Lenovo CCSDK <2.0.16.3 - Privilege Escalation
Apr 10, 2017
CVSS 7.8
EPSS 0.00
CVE-2016-8236
HIGH
Lenovo ThinkServer TSM < 3.77 - Unauthenticated Reset to Default Settings via Broadcast Storm
Mar 03, 2017
CVSS 7.5
EPSS 0.00
CVE-2016-8233
CRITICAL
Lenovo XClarity Administrator <1.2.2 - Info Disclosure
Mar 01, 2017
CVSS 9.8
EPSS 0.00
CVE-2016-8227
HIGH
Lenovo Transition - Privilege Escalation
Jan 26, 2017
CVSS 7.8
EPSS 0.00
Products
thinkcentre_m625q_firmware 28
ideacentre_5-14iob6_firmware 27
ideacentre_g5-14imb05_firmware 27
ideacentre_gaming_5-14iob6_firmware 27
thinkcentre_m75n_firmware 27
v50t-13imb_firmware 27
xclarity_administrator 27
ideacentre_3-07imb05_firmware 26
ideacentre_c5-14imb05_firmware 26
ideacentre_creator_5-14iob6_firmware 26
thinkcentre_m75s_gen_2_firmware 26
thinkcentre_m75t_gen_2_firmware 26
v30a-22iml_firmware 26
v50s-07imb_firmware 26
ideacentre_3-07ada05_firmware 25
ideacentre_g5-14amr05_firmware 25
legion_t7-34imz5_firmware 25
thinkcentre_m70c_firmware 25
thinkcentre_m70q_firmware 25
thinkcentre_m80q_firmware 25
thinkcentre_m80s_firmware 25
thinkcentre_m80t_firmware 25
thinkcentre_m90a_firmware 25
thinkcentre_m90q_tiny_firmware 25
thinkcentre_m90s_firmware 25
thinkedge_se30_firmware 25
v30a-24iml_firmware 25
v50a-22imb_firmware 25
v50a-24imb_firmware 25
v55t_gen_2_13acn_firmware 25
Quick Filters