Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-5474

Опубликовано: 11 окт. 2024
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

A potential information disclosure vulnerability was reported in Lenovo's packaging of Dolby Vision Provisioning software prior to version 2.0.0.2 that could allow a local attacker to read files on the system with elevated privileges during installation of the package. Previously installed versions are not affected by this issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:lenovo:dolby_vision_provisioning:*:*:*:*:*:*:*:*
Версия до 2.0.0.2 (исключая)

EPSS

Процентиль: 19%
0.0006
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-276
CWE-276

Связанные уязвимости

CVSS3: 5.5
github
больше 1 года назад

A potential information disclosure vulnerability was reported in Lenovo's packaging of Dolby Vision Provisioning software prior to version 2.0.0.2 that could allow a local attacker to read files on the system with elevated privileges during installation of the package. Previously installed versions are not affected by this issue.

EPSS

Процентиль: 19%
0.0006
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-276
CWE-276