Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-12673

Опубликовано: 12 фев. 2025
Источник: nvd
CVSS3: 7.8
EPSS Низкий

Описание

An improper privilege vulnerability was reported in a BIOS customization feature of Lenovo Vantage on SMB notebook devices which could allow a local attacker to elevate privileges on the system.

This vulnerability only affects Vantage installed on these devices:

  • Lenovo V Series (Gen 5)
  • ThinkBook 14 (Gen 6, 7)
  • ThinkBook 16 (Gen 6, 7)
  • ThinkPad E Series (Gen 1)

EPSS

Процентиль: 8%
0.00029
Низкий

7.8 High

CVSS3

Дефекты

CWE-250

Связанные уязвимости

CVSS3: 7.8
github
12 месяцев назад

An improper privilege vulnerability was reported in a BIOS customization feature of Lenovo Vantage on SMB notebook devices which could allow a local attacker to elevate privileges on the system. This vulnerability only affects Vantage installed on these devices: * Lenovo V Series (Gen 5) * ThinkBook 14 (Gen 6, 7) * ThinkBook 16 (Gen 6, 7) * ThinkPad E Series (Gen 1)

CVSS3: 7.8
fstec
12 месяцев назад

Уязвимость программного обеспечения Lenovo Vantage, связанная с недостатками разграничения доступа, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 8%
0.00029
Низкий

7.8 High

CVSS3

Дефекты

CWE-250