Show filters
432 Total Results
Displaying 261-270 of 432
Sort by:
Attacker Value
Unknown
CVE-2015-8534
Disclosure Date: March 27, 2020 (last updated February 21, 2025)
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnerability was discovered (fixed and publicly disclosed in 2015) in Lenovo Solution Center (LSC) prior to version 3.3.002 that could allow a user to execute arbitrary code with elevated privileges.
0
Attacker Value
Unknown
CVE-2015-7334
Disclosure Date: March 27, 2020 (last updated February 21, 2025)
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnerability was reported (fixed and publicly disclosed in 2015) in Lenovo System Update version 5.07.0008 and prior where the SUService.exe /type COMMAND type could allow a user to execute arbitrary code with elevated privileges.
0
Attacker Value
Unknown
CVE-2015-8535
Disclosure Date: March 27, 2020 (last updated February 21, 2025)
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A directory traversal vulnerability was discovered (fixed and publicly disclosed in 2015) in Lenovo Solution Center (LSC) prior to version 3.3.002 that could allow a user to execute arbitrary code with elevated privileges.
0
Attacker Value
Unknown
CVE-2015-8536
Disclosure Date: March 27, 2020 (last updated February 21, 2025)
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A vulnerability was discovered (fixed and publicly disclosed in 2015) in Lenovo Solution Center (LSC) prior to version 3.3.002 that could allow cross-site request forgery.
0
Attacker Value
Unknown
CVE-2015-5684
Disclosure Date: March 27, 2020 (last updated February 21, 2025)
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A buffer overflow vulnerability was reported, (fixed and publicly disclosed in 2015) in the Lenovo Service Engine (LSE), affecting various versions of BIOS for Lenovo Notebooks, that could allow a remote user to execute arbitrary code on the system.
0
Attacker Value
Unknown
CVE-2015-7333
Disclosure Date: March 27, 2020 (last updated February 21, 2025)
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnerability was reported (fixed and publicly disclosed in 2015) in Lenovo System Update version 5.07.0008 and prior where the SUService.exe /type INF and INF_BY_COMPATIBLE_ID command types could allow a user to execute arbitrary code with elevated privileges.
0
Attacker Value
Unknown
CVE-2019-19756
Disclosure Date: March 13, 2020 (last updated February 21, 2025)
An internal product security audit of Lenovo XClarity Administrator (LXCA) discovered Windows OS credentials, used to perform driver updates of managed systems, being written to a log file in clear text. This only affects LXCA version 2.6.0 when performing a Windows driver update. Affected logs are only accessible to authorized users in the First Failure Data Capture (FFDC) service log and log files on LXCA.
0
Attacker Value
Unknown
CVE-2019-19758
Disclosure Date: February 14, 2020 (last updated February 21, 2025)
A vulnerability in the web interface of Lenovo EZ Media & Backup Center, ix2 & ix2-dl version 4.1.406.34763 and prior could allow an unauthenticated, remote attacker to redirect a user to an untrusted web page.
0
Attacker Value
Unknown
CVE-2019-6194
Disclosure Date: February 14, 2020 (last updated February 21, 2025)
An XML External Entity (XXE) processing vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.6.6 that could allow information disclosure.
0
Attacker Value
Unknown
CVE-2019-6193
Disclosure Date: February 14, 2020 (last updated February 21, 2025)
An information disclosure vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.6.6 that could allow unauthenticated access to some configuration files which may contain usernames, license keys, IP addresses, and encrypted password hashes.
0