Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.8
CVE-2023-6043
A privilege escalation vulnerability was reported in Lenovo Vantage that could allow a local attacker to bypass integrity checks and execute arbitrar…
Vantage
4.0.49.0+
MEDIUM 6.8
CVE-2023-6044
A privilege escalation vulnerability was reported in Lenovo Vantage that could allow a local attacker with physical access to impersonate Lenovo Vant…
Vantage
4.0.49.0+
MEDIUM 5.5
CVE-2023-6450
An incorrect permissions vulnerability was reported in the Lenovo App Store app that could allow an attacker to use system resources, resulting in a …
App Store
12.4.20+
HIGH 7.8
CVE-2023-6338
Uncontrolled search path vulnerabilities were reported in the Lenovo Universal Device Client (UDC) that could allow an attacker with local access to …
Universal Device Client
23.10+
HIGH 7.5
CVE-2023-6540
A vulnerability was reported in the Lenovo Browser Mobile and Lenovo Browser HD Apps for Android that could allow an attacker to craft a payload that…
Browser Hd
2.1.4.1 / 9.1.3.1+
MEDIUM 6.7
CVE-2023-45076
A memory leakage vulnerability was reported in the 534D0140 DXE driver that may allow a local attacker with elevated privileges to write to NVRAM var…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-45077
A memory leakage vulnerability was reported in the 534D0740 DXE driver that may allow a local attacker with elevated privileges to write to NVRAM var…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-45078
A memory leakage vulnerability was reported in the DustFilterAlertSmm SMM driver that may allow a local attacker with elevated privileges to write to…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-45079
A memory leakage vulnerability was reported in the NvmramSmm SMM driver that may allow a local attacker with elevated privileges to write to NVRAM va…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43578
A buffer overflow was reported in the SmiFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to exe…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43579
A buffer overflow was reported in the SmuV11Dxe driver in some Lenovo Desktop products that may allow a local attacker with elevated privileges to ex…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43580
A buffer overflow was reported in the SmuV11DxeVMR module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43581
A buffer overflow was reported in the Update_WMI module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to e…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-45075
A memory leakage vulnerability was reported in the SWSMI_Shadow DXE driver that may allow a local attacker with elevated privileges to write to NVRAM…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43573
A buffer overflow was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with ele…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43575
A buffer overflow was reported in the UltraFunctionTable module in some Lenovo Desktop products that may allow a local attacker with elevated privile…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43576
A buffer overflow was reported in the WMISwSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to exe…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43577
A buffer overflow was reported in the ReFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to exec…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43571
A buffer overflow was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privil…
Ideacentre C5 14imb05 Firmware
Mitigation only
HIGH 7.5
CVE-2023-5079
Lenovo LeCloud App improper input validation allows attackers to access arbitrary components and arbitrary file downloads, which could result in info…
Lecloud
7.0.25.99+
HIGH 7.8
CVE-2023-4632
An uncontrolled search path vulnerability was reported in Lenovo System Update that could allow an attacker with local access to execute code with el…
System Update
5.08.02.25+
HIGH 7.8
CVE-2023-4706
A privilege escalation vulnerability was reported in Lenovo preloaded devices deployed using Microsoft AutoPilot under a standard user account due to…
Preload Directory
Mitigation only
MEDIUM 6.7
CVE-2023-5075
A buffer overflow was reported in the FmpSipoCapsuleDriver driver in the IdeaPad Duet 3-10IGL5 that may allow a local attacker with elevated privileg…
Ideapad Duet 3 10igl5 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-5078
A vulnerability was reported in some ThinkPad BIOS that could allow a physical or local attacker with elevated privileges to tamper with BIOS firmwar…
Thinkpad X13 Gen 3 Firmware
1.19+
MEDIUM 5.5
CVE-2023-4891
A potential use-after-free vulnerability was reported in the Lenovo View driver that could result in denial of service.
View Driver
2.3.18.1+
MEDIUM 6.7
CVE-2023-43570
A potential vulnerability was reported in the SMI callback function of the OemSmi driver that may allow a local attacker with elevated permissions to…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43567
A buffer overflow was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated priv…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-43569
A buffer overflow was reported in the OemSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execu…
Ideacentre C5 14imb05 Firmware
Mitigation only
MEDIUM 6.7
CVE-2022-4574
An SMI handler input validation vulnerability in the BIOS of some ThinkPad models could allow an attacker with local access and elevated privileges t…
Thinkpad X13 Yoga Gen 2 Firmware
1.26 / 1.30+
MEDIUM 6.7
CVE-2022-4575
A vulnerability due to improper write protection of UEFI variables was reported in the BIOS of some ThinkPad models could allow an attacker with phys…
Thinkpad 25 Firmware
1.45 / 1.49+