Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2022-3746
Disclosure Date: August 23, 2023 (last updated October 08, 2023)
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to cause some peripherals to work abnormally due to an exposed Embedded Controller (EC) interface.
0
Attacker Value
Unknown
CVE-2022-3745
Disclosure Date: August 23, 2023 (last updated October 08, 2023)
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to view incoming and returned data from SMI.
0
Attacker Value
Unknown
CVE-2022-3744
Disclosure Date: August 23, 2023 (last updated October 08, 2023)
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to unlock UEFI variables due to a hard-coded SMI handler credential.
0
Attacker Value
Unknown
CVE-2022-3743
Disclosure Date: August 23, 2023 (last updated October 08, 2023)
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges under certain conditions the ability to enumerate Embedded Controller (EC) commands.
0
Attacker Value
Unknown
CVE-2022-3742
Disclosure Date: August 23, 2023 (last updated October 08, 2023)
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to execute arbitrary code due to improper buffer validation.
0
Attacker Value
Unknown
CVE-2023-4028
Disclosure Date: August 17, 2023 (last updated October 08, 2023)
A buffer overflow has been identified in the SystemUserMasterHddPwdDxe driver in some Lenovo Notebook products which may allow an attacker with local access and elevated privileges to execute arbitrary code.
0