Vulnerabilities > Lenovo > Bios

DATE CVE VULNERABILITY TITLE RISK
2021-07-16 CVE-2021-3452 Unspecified vulnerability in Lenovo Bios
A potential vulnerability in the system shutdown SMI callback function in some ThinkPad models may allow an attacker with local access and elevated privileges to execute arbitrary code.
local
low complexity
lenovo
6.7
2017-07-17 CVE-2017-3754 Unspecified vulnerability in Lenovo Bios
Some Lenovo brand notebook systems do not have write protections properly configured in the system BIOS.
local
low complexity
lenovo
6.7
2016-11-29 CVE-2016-8224 Cryptographic Issues vulnerability in Lenovo products
A vulnerability has been identified in some Lenovo Notebook and ThinkServer systems where an attacker with administrative privileges on a system could install a program that circumvents Intel Management Engine (ME) protections.
local
low complexity
lenovo CWE-310
4.4
2016-09-22 CVE-2016-5247 7PK - Security Features vulnerability in Lenovo Bios
The BIOS for Lenovo ThinkCentre E93, M6500t/s, M6600, M6600q, M6600t/s, M73p, M800, M83, M8500t/s, M8600t/s, M900, M93, and M93P devices; ThinkServer RQ940, RS140, TS140, TS240, TS440, and TS540 devices; and ThinkStation E32, P300, and P310 devices might allow local users or physically proximate attackers to bypass the Secure Boot protection mechanism by leveraging an AMI test key.
local
low complexity
lenovo CWE-254
7.8