Vulnerabilities > Lenovo

DATE CVE VULNERABILITY TITLE RISK
2024-07-31 CVE-2019-6198 Improper Authentication vulnerability in Lenovo Pcmanager 2.6.40.3154
A vulnerability was reported in Lenovo PC Manager prior to version 2.8.90.11211 that could allow a local attacker to escalate privileges.
local
low complexity
lenovo CWE-287
7.8
2024-07-31 CVE-2023-1577 Unspecified vulnerability in Lenovo Drivers Management 2.7.1128.1046
A path hijacking vulnerability was reported in Lenovo Driver Manager prior to version 3.1.1307.1308 that could allow a local user to execute code with elevated privileges.
local
low complexity
lenovo
7.8
2024-01-19 CVE-2023-5080 Unspecified vulnerability in Lenovo products
A privilege escalation vulnerability was reported in some Lenovo tablet products that could allow local applications access to device identifiers and system commands.
local
low complexity
lenovo
7.8
2024-01-19 CVE-2023-6044 Unspecified vulnerability in Lenovo Vantage
A privilege escalation vulnerability was reported in Lenovo Vantage that could allow a local attacker with physical access to impersonate Lenovo Vantage Service and execute arbitrary code with elevated privileges.
low complexity
lenovo
6.8
2024-01-03 CVE-2023-6540 Unspecified vulnerability in Lenovo Browser HD and Browser Mobile
A vulnerability was reported in the Lenovo Browser Mobile and Lenovo Browser HD Apps for Android that could allow an attacker to craft a payload that could result in the disclosure of sensitive information.
network
low complexity
lenovo
7.5
2023-11-08 CVE-2023-43571 Unspecified vulnerability in Lenovo products
A buffer overflow was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo
6.7
2023-11-08 CVE-2023-43572 Out-of-bounds Read vulnerability in Lenovo products
A buffer over-read was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
local
low complexity
lenovo CWE-125
4.4
2023-11-08 CVE-2023-43573 Unspecified vulnerability in Lenovo products
A buffer overflow was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo
6.7
2023-11-08 CVE-2023-43574 Out-of-bounds Read vulnerability in Lenovo products
A buffer over-read was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
local
low complexity
lenovo CWE-125
4.4
2023-11-08 CVE-2023-43575 Unspecified vulnerability in Lenovo products
A buffer overflow was reported in the UltraFunctionTable module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo
6.7