Show filters
432 Total Results
Displaying 171-180 of 432
Sort by:
Attacker Value
Unknown
CVE-2022-4434
Disclosure Date: January 05, 2023 (last updated February 24, 2025)
A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS driver that could allow a local attacker with elevated privileges to cause information disclosure.
0
Attacker Value
Unknown
CVE-2022-4433
Disclosure Date: January 05, 2023 (last updated February 24, 2025)
A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS LenovoSetupConfigDxe driver that could allow a local attacker with elevated privileges to cause information disclosure.
0
Attacker Value
Unknown
CVE-2022-4432
Disclosure Date: January 05, 2023 (last updated February 24, 2025)
A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS PersistenceConfigDxe driver that could allow a local attacker with elevated privileges to cause information disclosure.
0
Attacker Value
Unknown
CVE-2019-19705
Disclosure Date: December 26, 2022 (last updated February 24, 2025)
Realtek Audio Drivers for Windows, as used on the Lenovo ThinkPad X1 Carbon 20A7, 20A8, 20BS, and 20BT before 6.0.8882.1 and 20KH and 20KG before 6.0.8907.1 (and on many other Lenovo and non-Lenovo products), mishandles DLL preloading.
0
Attacker Value
Unknown
CVE-2021-42205
Disclosure Date: November 07, 2022 (last updated December 22, 2024)
ELAN Miniport touchpad Windows driver before 24.21.51.2, as used in PC hardware from multiple manufacturers, allows local users to cause a system crash by sending a certain IOCTL request, because that request is handled twice.
0
Attacker Value
Unknown
CVE-2022-1513
Disclosure Date: August 23, 2022 (last updated February 24, 2025)
A potential vulnerability was reported in Lenovo PCManager prior to version 5.0.10.4191 that may allow code execution when visiting a specially crafted website.
0
Attacker Value
Unknown
CVE-2022-1110
Disclosure Date: May 18, 2022 (last updated February 23, 2025)
A buffer overflow vulnerability in Lenovo Smart Standby Driver prior to version 4.1.50.0 could allow a local attacker to cause denial of service.
0
Attacker Value
Unknown
CVE-2021-42852
Disclosure Date: May 18, 2022 (last updated February 23, 2025)
A command injection vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow an authenticated user to execute operating system commands by sending a crafted packet to the device.
0
Attacker Value
Unknown
CVE-2021-42851
Disclosure Date: May 18, 2022 (last updated February 23, 2025)
A vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow an unauthenticated user to create a standard user account.
0
Attacker Value
Unknown
CVE-2021-42850
Disclosure Date: May 18, 2022 (last updated February 23, 2025)
A weak default administrator password for the web interface and serial port was reported in some Lenovo Personal Cloud Storage devices that could allow unauthorized device access to an attacker with physical or local network access.
0