Show filters
37 Total Results
Displaying 11-20 of 37
Sort by:
Attacker Value
Unknown

CVE-2022-4568

Disclosure Date: May 01, 2023 (last updated January 31, 2025)
A directory permissions management vulnerability in Lenovo System Update may allow elevation of privileges.
Attacker Value
Unknown

CVE-2023-1277

Disclosure Date: March 08, 2023 (last updated October 21, 2023)
A vulnerability, which was classified as critical, was found in kylin-system-updater up to 1.4.20kord on Ubuntu Kylin. Affected is the function InstallSnap of the component Update Handler. The manipulation leads to command injection. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-222600.
Attacker Value
Unknown

CVE-2022-34404

Disclosure Date: February 11, 2023 (last updated November 08, 2023)
Dell System Update, version 2.0.0 and earlier, contains an Improper Certificate Validation in data parser module. A local attacker with high privileges could potentially exploit this vulnerability, leading to credential theft and/or denial of service.
Attacker Value
Unknown

CVE-2022-29149

Disclosure Date: June 15, 2022 (last updated November 29, 2024)
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
0
Attacker Value
Unknown

CVE-2022-0354

Disclosure Date: April 22, 2022 (last updated October 07, 2023)
A vulnerability was reported in Lenovo System Update that could allow a local user with interactive system access the ability to execute code with elevated privileges only during the installation of a System Update package released before 2022-02-25 that displays a command prompt window.
Attacker Value
Unknown

CVE-2022-22554

Disclosure Date: January 06, 2022 (last updated February 23, 2025)
Dell EMC System Update, version 1.9.2 and prior, contain an Unprotected Storage of Credentials vulnerability. A local attacker with user privleges could potentially exploit this vulnerability leading to the disclosure of user passwords.
Attacker Value
Unknown

CVE-2021-38649

Disclosure Date: September 15, 2021 (last updated November 28, 2024)
Open Management Infrastructure Elevation of Privilege Vulnerability
0
Attacker Value
Unknown

CVE-2021-38645

Disclosure Date: September 15, 2021 (last updated November 28, 2024)
Open Management Infrastructure Elevation of Privilege Vulnerability
0
Attacker Value
Unknown

CVE-2021-21529

Disclosure Date: March 25, 2021 (last updated February 22, 2025)
Dell System Update (DSU) 1.9 and earlier versions contain a denial of service vulnerability. A local authenticated malicious user with low privileges may potentially exploit this vulnerability to cause the system to run out of memory by running multiple instances of the vulnerable application.
Attacker Value
Unknown

CVE-2020-8342

Disclosure Date: September 15, 2020 (last updated February 22, 2025)
A race condition vulnerability was reported in Lenovo System Update prior to version 5.07.0106 that could allow escalation of privilege.