CVE-2019-6188

CRITICAL

Lenovo ThinkPad T460p <R07ET90W/T470p <R0FET50W - Privilege Escalation

Title source: llm
STIX 2.1

Description

The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T460p, BIOS versions up to R07ET90W, and T470p, BIOS versions up to R0FET50W, which may allow for unauthorized access.

References (1)

Core 1
Core References

Scores

CVSS v3 9.8
EPSS 0.0062
EPSS Percentile 70.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (50)
lenovo/130-14ikb_firmware
lenovo/130-15ikb_firmware
lenovo/330-14ikb_firmware
lenovo/330-14ikbr_firmware
lenovo/330-15ich_firmware
lenovo/330-15ikb_firmware
lenovo/330-15ikbr_firmware
lenovo/330-15ikbr_touch_firmware
lenovo/330-17ich_firmware
lenovo/330-17ikb_firmware
... and 40 more
Published Nov 12, 2019
Tracked Since Feb 18, 2026