Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fc78-c6mj-8vjm

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Lenovo System Update (formerly ThinkVantage System Update) before 5.06.0034 uses predictable security tokens, which allows local users to gain privileges by sending a valid token with a command to the System Update service (SUService.exe) through an unspecified named pipe.

Lenovo System Update (formerly ThinkVantage System Update) before 5.06.0034 uses predictable security tokens, which allows local users to gain privileges by sending a valid token with a command to the System Update service (SUService.exe) through an unspecified named pipe.

EPSS

Процентиль: 96%
0.29577
Средний

Связанные уязвимости

nvd
больше 10 лет назад

Lenovo System Update (formerly ThinkVantage System Update) before 5.06.0034 uses predictable security tokens, which allows local users to gain privileges by sending a valid token with a command to the System Update service (SUService.exe) through an unspecified named pipe.

EPSS

Процентиль: 96%
0.29577
Средний