Show filters
37 Total Results
Displaying 11-20 of 37
Sort by:
Attacker Value
Unknown
CVE-2022-4568
Disclosure Date: May 01, 2023 (last updated January 31, 2025)
A directory permissions management vulnerability in Lenovo System Update may allow elevation of privileges.
0
Attacker Value
Unknown
CVE-2023-1277
Disclosure Date: March 08, 2023 (last updated October 21, 2023)
A vulnerability, which was classified as critical, was found in kylin-system-updater up to 1.4.20kord on Ubuntu Kylin. Affected is the function InstallSnap of the component Update Handler. The manipulation leads to command injection. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-222600.
0
Attacker Value
Unknown
CVE-2022-34404
Disclosure Date: February 11, 2023 (last updated November 08, 2023)
Dell System Update, version 2.0.0 and earlier, contains an Improper Certificate Validation in data parser module. A local attacker with high privileges could potentially exploit this vulnerability, leading to credential theft and/or denial of service.
0
Attacker Value
Unknown
CVE-2022-29149
Disclosure Date: June 15, 2022 (last updated November 29, 2024)
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2022-0354
Disclosure Date: April 22, 2022 (last updated October 07, 2023)
A vulnerability was reported in Lenovo System Update that could allow a local user with interactive system access the ability to execute code with elevated privileges only during the installation of a System Update package released before 2022-02-25 that displays a command prompt window.
0
Attacker Value
Unknown
CVE-2022-22554
Disclosure Date: January 06, 2022 (last updated February 23, 2025)
Dell EMC System Update, version 1.9.2 and prior, contain an Unprotected Storage of Credentials vulnerability. A local attacker with user privleges could potentially exploit this vulnerability leading to the disclosure of user passwords.
0
Attacker Value
Unknown
CVE-2021-38649
Disclosure Date: September 15, 2021 (last updated November 28, 2024)
Open Management Infrastructure Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2021-38645
Disclosure Date: September 15, 2021 (last updated November 28, 2024)
Open Management Infrastructure Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2021-21529
Disclosure Date: March 25, 2021 (last updated February 22, 2025)
Dell System Update (DSU) 1.9 and earlier versions contain a denial of service vulnerability. A local authenticated malicious user with low privileges may potentially exploit this vulnerability to cause the system to run out of memory by running multiple instances of the vulnerable application.
0
Attacker Value
Unknown
CVE-2020-8342
Disclosure Date: September 15, 2020 (last updated February 22, 2025)
A race condition vulnerability was reported in Lenovo System Update prior to version 5.07.0106 that could allow escalation of privilege.
0