CVE-2020-8345

HIGH

Lenovo HardwareScan Plugin <1.0.46.11 - Privilege Escalation

Title source: llm

Description

A DLL search path vulnerability was reported in the Lenovo HardwareScan Plugin for the Lenovo Vantage hardware scan feature prior to version 1.0.46.11 that could allow escalation of privilege.

Scores

CVSS v3 7.3
EPSS 0.0015
EPSS Percentile 35.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-427
Status published

Affected Products (1)

lenovo/hardware_scan < 1.0.46.11

Timeline

Published Oct 14, 2020
Tracked Since Feb 18, 2026