lenovo

482 tracked vulnerabilities.

CVE-2023-45075 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Memory Leakage via SWSMI_Shadow DXE Driver
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43581 MEDIUM
Lenovo ThinkCentre M70q Firmware - Buffer Overflow in Update_WMI Module
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43580 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Buffer Overflow in SmuV11DxeVMR Module
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43579 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Buffer Overflow in SmuV11Dxe Driver
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43578 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Buffer Overflow in SmiFlash Module
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43577 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Buffer Overflow in ReFlash Module
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43576 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Buffer Overflow in WMISwSmi Module
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43575 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Buffer Overflow in UltraFunctionTable
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43574 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Out-of-bounds Read in LEMALLDriversConnectedEventHook
Nov 08, 2023
CVSS 4.4
EPSS 0.00
CVE-2023-43573 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Buffer Overflow in LEMALLDriversConnectedEventHook
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43572 MEDIUM
Lenovo Desktop Firmware - Out-of-bounds Read in BiosExtensionLoader
Nov 08, 2023
CVSS 4.4
EPSS 0.00
CVE-2023-43571 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Buffer Overflow in BiosExtensionLoader
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-5079 HIGH
Lenovo LeCloud App - Info Disclosure
Nov 08, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-5078 MEDIUM
ThinkPad BIOS - Privilege Escalation
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-5075 MEDIUM
IdeaPad Duet 3-10IGL5 - Buffer Overflow
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-4891 MEDIUM
Lenovo View Driver < 2.3.18.1 - Use-After-Free
Nov 08, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-4706 HIGH
Lenovo Preload Directory - Privilege Escalation via Incorrect Default Permissions
Nov 08, 2023
CVSS 7.3
EPSS 0.00
CVE-2023-4632 HIGH
Lenovo System Update - Privilege Escalation
Nov 08, 2023
CVSS 7.8
EPSS 0.00
CVE-2023-43570 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Authenticated Arbitrary Code Execution via SMI Callback Function
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43569 MEDIUM
Lenovo ThinkCentre M70q Firmware - Buffer Overflow in OemSmi Module
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-43568 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Buffer Over-read in LemSecureBootForceKey Module
Nov 08, 2023
CVSS 4.4
EPSS 0.00
CVE-2023-43567 MEDIUM
Lenovo IdeaCentre and ThinkCentre Firmware - Authenticated Buffer Overflow in LemSecureBootForceKey Module
Nov 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-4608 MEDIUM
ThinkSystem <v3 - Authenticated SQL Injection
Oct 25, 2023
CVSS 4.1
EPSS 0.00
CVE-2023-4607 HIGH
Lenovo ThinkAgile HX/MX Series Firmware - Authenticated Privilege Escalation via API Command
Oct 25, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-4606 HIGH
Lenovo ThinkAgile HX Series Firmware - Authenticated Missing Authorization via Crafted API Command
Oct 25, 2023
CVSS 8.1
EPSS 0.00