CVE-2025-14058
LOWLenovo Tablets - Auth Bypass
Title source: llmDescription
A potential missing authentication vulnerability was reported in some Lenovo Tablets that could allow an unauthorized user with physical access to modify Control Center settings if the device is locked when the "Allow Control Center access when locked" option is disabled.
Scores
CVSS v3
3.2
EPSS
0.0003
EPSS Percentile
6.4%
Attack Vector
PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
Classification
CWE
CWE-306
Status
draft
Timeline
Published
Jan 14, 2026
Tracked Since
Feb 18, 2026