Описание
A denial of service vulnerability was reported in Lenovo Vantage HardwareScan Plugin version 1.3.0.5 and earlier that could allow a local attacker to delete contents of an arbitrary directory under certain conditions.
Ссылки
- MitigationVendor Advisory
- MitigationVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.0.0.213 (исключая)
cpe:2.3:a:lenovo:system_update_plugin:*:*:*:*:*:lenovo_vantage:*:*
Конфигурация 2Версия до 1.3.1.2 (исключая)
cpe:2.3:a:lenovo:hardware_scan_plugin:*:*:*:*:*:lenovo_vantage:*:*
Конфигурация 3Версия до 2.4.1.1 (исключая)
cpe:2.3:a:lenovo:hardware_scan_addin:*:*:*:*:*:lenovo_vantage:*:*
EPSS
Процентиль: 4%
0.00019
Низкий
6.1 Medium
CVSS3
7.1 High
CVSS3
Дефекты
CWE-367
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 6.1
github
больше 2 лет назад
A denial of service vulnerability was reported in Lenovo Vantage HardwareScan Plugin version 1.3.0.5 and earlier that could allow a local attacker to delete contents of an arbitrary directory under certain conditions.
EPSS
Процентиль: 4%
0.00019
Низкий
6.1 Medium
CVSS3
7.1 High
CVSS3
Дефекты
CWE-367
NVD-CWE-noinfo