Vulnerability index

Browse CVEs

102 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Transition HIGH 7.8
CVE-2016-8227

Privilege escalation vulnerability in Lenovo Transition application used in Lenovo Yoga, Flex and Miix systems running Windows allows local users to …

Mitigation only
Fix from $1,950 2017-01-26
Bios HIGH 7.8
CVE-2016-5247

The BIOS for Lenovo ThinkCentre E93, M6500t/s, M6600, M6600q, M6600t/s, M73p, M800, M83, M8500t/s, M8600t/s, M900, M93, and M93P devices; ThinkServer…

Mitigation only
Fix from $1,950 2016-09-22
Bios Efi Driver HIGH 8.2
CVE-2016-5729

Lenovo BIOS EFI Driver allows local administrators to execute arbitrary code with System Management Mode (SMM) privileges via unspecified vectors.

Mitigation only
Fix from $1,950 2016-06-30
Accelerator Application HIGH 7.5
CVE-2016-3944

UpdateAgent in Lenovo Accelerator Application allows man-in-the-middle attackers to execute arbitrary code by spoofing an update response from susapi…

Mitigation only
Fix from $1,950 2016-06-03
Shareit MEDIUM 6.1
CVE-2016-4783

Cross-site scripting (XSS) vulnerability in Lenovo SHAREit before 3.5.98_ww on Android before 4.4 allows remote attackers to inject arbitrary web scr…

Mitigation only
Fix from $1,600 2016-05-23
Shareit HIGH 8.8
CVE-2016-4782

Lenovo SHAREit before 3.5.98_ww on Android before 4.2 allows remote attackers to have unspecified impact via a crafted intent: URL, aka an "intent sc…

Mitigation only
Fix from $1,950 2016-05-23
Emc Firmware MEDIUM 5.3
CVE-2015-8108

The management interface in LenovoEMC EZ Media & Backup (hm3), ix2/ix2-dl, ix4-300d, px12-400r/450r, px6-300d, px2-300d, px4-300r, px4-400d, px4-400r…

Mitigation only
Fix from $1,600 2016-04-12
Shareit MEDIUM 6.1
CVE-2016-1492

The Wifi hotspot in Lenovo SHAREit before 3.5.48_ww for Android, when configured to receive files, does not require a password, which makes it easier…

No fix yet
Fix from $1,600 2016-01-26
Veriface MEDIUM 6.9
CVE-2009-0655

Lenovo Veriface III allows physically proximate attackers to login to a Windows account by presenting a "plain image" of the authorized user.

No fix yet
Fix from $1,600 2009-02-20
Access Support MEDIUM 5.8
CVE-2007-2240

The IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possibly acpir.dll before 1.0.0.9 (Au…

Mitigation only
Fix from $1,600 2007-08-15
Access Support MEDIUM 5.8
CVE-2007-2928

Format string vulnerability in the IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possib…

Mitigation only
Fix from $1,600 2007-08-15
Access Support MEDIUM 5.8
CVE-2007-2929

The IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possibly acpir.dll before 1.0.0.9 (Au…

Mitigation only
Fix from $1,600 2007-08-15