Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.8
CVE-2023-4030
A vulnerability was reported in BIOS for ThinkPad P14s Gen 2, P15s Gen 2, T14 Gen 2, and T15 Gen 2 that could cause the system to recover to insecure…
Thinkpad T15 Gen 2 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-4028
A buffer overflow has been identified in the SystemUserMasterHddPwdDxe driver in some Lenovo Notebook products which may allow an attacker with local…
13w Yoga Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-34419
A buffer overflow has been identified in the SetupUtility driver in some Lenovo Notebook products which may allow an attacker with local access and e…
Legion 5 Pro 16iah7h Firmware
Mitigation only
MEDIUM 6.3
CVE-2023-2993
A valid, authenticated user with limited privileges may be able to use specifically crafted web management server API calls to execute a limited numb…
Nextscale N1200 Enclosure Firmware
Mitigation only
HIGH 7.5
CVE-2023-2992
An unauthenticated denial of service vulnerability exists in the SMM v1, SMM v2, and FPC management web server which can be triggered under crafted …
Nextscale N1200 Enclosure Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-2290
A potential vulnerability in the LenovoFlashDeviceInterface SMI handler may allow an attacker with local access and elevated privileges to execute ar…
Thinkpad E14 Firmware
Mitigation only
HIGH 7.8
CVE-2022-48181
An ErrorMessage driver stack-based buffer overflow vulnerability in BIOS of some ThinkPad models could allow an attacker with local access to elevate…
Ideacentre C5 14imb05 Firmware
Mitigation only
HIGH 7.8
CVE-2022-48188
A buffer overflow vulnerability in the SecureBootDXE BIOS driver of some Lenovo Desktop and ThinkStation models could allow an attacker with local ac…
Ideacentre Aio 3 21itl7 Firmware
Mitigation only
MEDIUM 6.7
CVE-2022-40137
A buffer overflow in the WMI SMI Handler in some Lenovo models may allow an attacker with local access and elevated privileges to execute arbitrary c…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2022-3432
A potential vulnerability in a driver used during manufacturing process on the Ideapad Y700-14ISK that was mistakenly not deactivated may allow an at…
Ideapad Y700 14isk Firmware
Mitigation only
HIGH 7.8
CVE-2022-1891
A buffer overflow in the SystemLoadDefaultDxe driver in some Lenovo Notebook products may allow an attacker with local privileges to execute arbitrar…
Thinkbook 14 Iml Firmware
Mitigation only
HIGH 7.8
CVE-2022-1892
A buffer overflow in the SystemBootManagerDxe driver in some Lenovo Notebook products may allow an attacker with local privileges to execute arbitrar…
100e 2nd Gen Firmware
Mitigation only
HIGH 7.8
CVE-2022-1890
A buffer overflow in the ReadyBootDxe driver in some Lenovo Notebook products may allow an attacker with local privileges to execute arbitrary code.
Thinkbook 14 Iml Firmware
Mitigation only
MEDIUM 6.7
CVE-2022-3430
A potential vulnerability in the WMI Setup driver on some consumer Lenovo Notebook devices may allow an attacker with elevated privileges to modify s…
D330 10igl Firmware
Mitigation only
MEDIUM 6.7
CVE-2021-4211
A potential vulnerability in the SMI callback function used in the SMBIOS event log driver in some Lenovo Desktop, ThinkStation, and ThinkEdge models…
A340 22icb Firmware
Mitigation only
MEDIUM 6.7
CVE-2022-1107
During an internal product security audit a potential vulnerability due to use of Boot Services in the SmmOEMInt15 SMI handler was discovered in some…
Thinkpad 11e Firmware
Mitigation only
MEDIUM 6.7
CVE-2022-1108
A potential vulnerability due to improper buffer validation in the SMI handler LenovoFlashDeviceInterface in Thinkpad X1 Fold Gen 1 could be exploite…
Thinkpad X1 Fold Gen 1 Firmware
Mitigation only
MEDIUM 6.7
CVE-2021-3970
A potential vulnerability in LenovoVariable SMI Handler due to insufficient validation in some Lenovo Notebook models BIOS may allow an attacker with…
Ideapad 3 14ada05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2021-3971
A potential vulnerability by a driver used during older manufacturing processes on some consumer Lenovo Notebook devices that was mistakenly included…
Ideapad 3 14ada05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2021-3972
A potential vulnerability by a driver used during manufacturing process on some consumer Lenovo Notebook devices' BIOS that was mistakenly not deacti…
Ideapad 3 14ada05 Firmware
Mitigation only
MEDIUM 6.8
CVE-2021-3519
A vulnerability was reported in some Lenovo Desktop models that could allow unauthorized access to the boot menu, when the "BIOS Password At Boot Dev…
Ideacentre C5 14mb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2021-3719
A potential vulnerability in the SMI callback function that saves and restore boot script tables used for resuming from sleep state in some ThinkCent…
Thinkcentre E93 Firmware
Mitigation only
MEDIUM 6.8
CVE-2021-3614
A vulnerability was reported on some Lenovo Notebook systems that could allow an attacker with physical access to elevate privileges under certain co…
Ideapad 1 11ada05 Firmware
No fix yet
MEDIUM 6.7
CVE-2021-3452
A potential vulnerability in the system shutdown SMI callback function in some ThinkPad models may allow an attacker with local access and elevated p…
Bios
Mitigation only
MEDIUM 6.7
CVE-2020-8354
A potential vulnerability in the SMI callback function used in the VariableServiceSmm driver in some Lenovo Notebook models may allow arbitrary code …
Notebook Firmware
Mitigation only
MEDIUM 6.4
CVE-2020-8332
A potential vulnerability in the SMI callback function used in the legacy BIOS mode USB drivers in some legacy Lenovo and IBM System x servers may al…
Bladecenter Hs23 Firmware
Mitigation only
MEDIUM 6.1
CVE-2020-8347
A reflective cross-site scripting (XSS) vulnerability was reported in Lenovo Enterprise Network Disk prior to version 6.1 patch 6 hotfix 4 that could…
Enterprise Network Disk
Mitigation only
MEDIUM 6.1
CVE-2020-8348
A DOM-based cross-site scripting (XSS) vulnerability was reported in Lenovo Enterprise Network Disk prior to version 6.1 patch 6 hotfix 4 that could …
Enterprise Network Disk
Mitigation only
MEDIUM 6.8
CVE-2020-8334
The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized a…
Thinkpad T495s Firmware
Mitigation only
MEDIUM 6.7
CVE-2020-8321
A potential vulnerability in the SMI callback function used in the System Lock Preinstallation driver in some Lenovo Notebook and ThinkStation models…
130 14ast Firmware
Mitigation only