Описание
A DLL search path vulnerability was reported in Lenovo Drivers Management prior to version 2.7.1128.1046 that could allow an authenticated user to execute code with elevated privileges.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.7.1128.1046 (исключая)
cpe:2.3:a:lenovo:drivers_management:*:*:*:*:*:*:*:*
EPSS
Процентиль: 35%
0.00143
Низкий
7.3 High
CVSS3
7.8 High
CVSS3
6.9 Medium
CVSS2
Дефекты
CWE-426
CWE-426
Связанные уязвимости
github
больше 3 лет назад
A DLL search path vulnerability was reported in Lenovo Drivers Management prior to version 2.7.1128.1046 that could allow an authenticated user to execute code with elevated privileges.
EPSS
Процентиль: 35%
0.00143
Низкий
7.3 High
CVSS3
7.8 High
CVSS3
6.9 Medium
CVSS2
Дефекты
CWE-426
CWE-426