CVE-2021-3633

HIGH

Lenovo Drivers Management < 2.9.0719.1104 - Uncontrolled Search Path

Title source: rule

Description

A DLL preloading vulnerability was reported in Lenovo Driver Management prior to version 2.9.0719.1104 that could allow privilege escalation.

Scores

CVSS v3 7.3
EPSS 0.0002
EPSS Percentile 5.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-427 CWE-347
Status published

Affected Products (1)

lenovo/drivers_management < 2.9.0719.1104

Timeline

Published Aug 17, 2021
Tracked Since Feb 18, 2026