CVE-2015-3321

MEDIUM

Lenovo Fingerprint Manager <8.01.42 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Services and files in Lenovo Fingerprint Manager before 8.01.42 have incorrect ACLs, which allows local users to invalidate local checks and gain privileges via standard filesystem operations.

References (1)

Core 1
Core References
Issue Tracking, Mitigation, Vendor Advisory x_refsource_confirm
https://support.lenovo.com/us/en/product_security/lenovo_fpr

Scores

CVSS v3 6.7
EPSS 0.0004
EPSS Percentile 10.9%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-264
Status published
Products (1)
lenovo/fingerprint_manager < 8.01.41
Published Oct 03, 2017
Tracked Since Feb 18, 2026