Vulnerabilities > Lenovo > 300E 2ND GEN Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-01-26 CVE-2022-1892 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow in the SystemBootManagerDxe driver in some Lenovo Notebook products may allow an attacker with local privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
7.8
2021-07-16 CVE-2021-3614 Unspecified vulnerability in Lenovo products
A vulnerability was reported on some Lenovo Notebook systems that could allow an attacker with physical access to elevate privileges under certain conditions during a BIOS update performed by Lenovo Vantage.
low complexity
lenovo
6.8
2019-08-29 CVE-2019-10724 Unspecified vulnerability in Lenovo products
There is a vulnerability with the Dolby DAX2 API system services in which a low-privileged user can terminate arbitrary processes that are running at a higher privilege.
network
low complexity
lenovo
6.5