Vulnerabilities > Lenovo > High

DATE CVE VULNERABILITY TITLE RISK
2020-03-27 CVE-2015-8536 Cross-Site Request Forgery (CSRF) vulnerability in Lenovo Solution Center 3.3.0001
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA.
network
low complexity
lenovo CWE-352
8.8
2020-03-27 CVE-2015-8535 Path Traversal vulnerability in Lenovo Solution Center 3.3.0001
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA.
local
low complexity
lenovo CWE-22
7.8
2020-03-27 CVE-2015-8534 Improper Privilege Management vulnerability in Lenovo Solution Center 3.3.0001
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA.
local
low complexity
lenovo CWE-269
7.8
2020-03-27 CVE-2015-7336 Improper Verification of Cryptographic Signature vulnerability in Lenovo System Update
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA.
network
low complexity
lenovo CWE-347
7.5
2020-03-27 CVE-2015-7335 Race Condition vulnerability in Lenovo System Update
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA.
local
high complexity
lenovo CWE-362
7.0
2020-03-27 CVE-2015-7334 Improper Privilege Management vulnerability in Lenovo System Update
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA.
local
low complexity
lenovo CWE-269
7.8
2020-03-27 CVE-2015-7333 Improper Privilege Management vulnerability in Lenovo System Update
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA.
local
low complexity
lenovo CWE-269
7.8
2020-02-14 CVE-2019-6193 Information Exposure vulnerability in Lenovo Xclarity Administrator
An information disclosure vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.6.6 that could allow unauthenticated access to some configuration files which may contain usernames, license keys, IP addresses, and encrypted password hashes.
network
low complexity
lenovo CWE-200
7.5
2019-12-10 CVE-2019-6183 Unspecified vulnerability in Lenovo Energy Management 15.11.29.1
A denial of service vulnerability has been reported in Lenovo Energy Management Driver for Windows 10 versions prior to 15.11.29.7 that could cause systems to experience a blue screen error.
network
low complexity
lenovo
7.5
2019-11-20 CVE-2019-6191 Unspecified vulnerability in Lenovo Paper 1.0.0.22
A potential vulnerability in the discontinued LenovoPaper software version 1.0.0.22 may allow local privilege escalation.
local
low complexity
lenovo
7.8