Attacker Value
Unknown
0
A potential vulnerability in the SMI callback function in some Lenovo ThinkPad models may allow arbitrary code execution.
0
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
A potential vulnerability in the SMI callback function in some Lenovo ThinkPad models may allow arbitrary code execution.
(Last updated November 27, 2024) ▾
MITRE ATT&CK
Log in to add MITRE ATT&CK tag
Add MITRE ATT&CK tactics and techniques that apply to this CVE.
MITRE ATT&CK
Select the MITRE ATT&CK Tactics that apply to this CVE
Collection
Select any Techniques used:
Command and Control
Select any Techniques used:
Credential Access
Select any Techniques used:
Defense Evasion
Select any Techniques used:
Discovery
Select any Techniques used:
Execution
Select any Techniques used:
Exfiltration
Select any Techniques used:
Impact
Select any Techniques used:
Initial Access
Select any Techniques used:
Lateral Movement
Select any Techniques used:
Persistence
Select any Techniques used:
Privilege Escalation
Select any Techniques used:
Topic Tags
Select the tags that apply to this CVE (Assessment added tags are disabled and cannot be removed)
What makes this of high-value to an attacker?
What makes this of low-value to an attacker?
Description
A potential vulnerability in the SMI callback function used in Legacy USB driver using passed parameter without sufficient checking in some Lenovo ThinkPad models may allow arbitrary code execution.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
Data provided by the National Vulnerability Database (NVD)
Base Score:
6.4 Medium
Impact Score:
5.9
Exploitability Score:
0.5
Attack Vector (AV):
Local
Attack Complexity (AC):
High
Privileges Required (PR):
High
User Interaction (UI):
None
Scope (S):
Unchanged
Confidentiality (C):
High
Integrity (I):
High
Availability (A):
High
General Information
Offensive Application
Unknown
Utility Class
Unknown
Ports
Unknown
OS
Unknown
Vulnerable Versions
ThinkPad Various
Prerequisites
Unknown
Discovered By
Unknown
PoC Author
Unknown
Metasploit Module
Unknown
Reporter
Unknown
Vendors
Products
- 130 14ikb firmware
- 130 15ikb firmware
- 330 14ikb firmware
- 330 14ikbr firmware
- 330 15ich firmware
- 330 15ikb firmware
- 330 15ikbr firmware
- 330 15ikbr touch firmware
- 330 17ich firmware
- 330 17ikb firmware
- 330 17ikbr firmware
- 330c 14ikb firmware
- 330c 15ikb firmware
- 330c 15ikbr firmware
- 340c 15ikb firmware
- 340c 15iwl firmware
- 510 15ikl firmware
- 510s 08ikl firmware
- 530s 14ikb firmware
- 530s 14iwl firmware
- 530s 15ikb firmware
- 530s 15iwl firmware
- 63 firmware
- 720s touch 15ikb firmware
- 720s 14ikbr firmware
- 720s 15ikb firmware
- 730s 13iwl firmware
- a340 22 iwl firmware
- a340 22ast firmware
- a340 22icb firmware
- a340 24 iwl firmware
- a340 24icb firmware
- aio 330 20ast firmware
- aio 330 20igm firmware
- aio 520 24ast firmware
- aio520 22ikl firmware
- aio520 22iku firmware
- aio520 24arr firmware
- aio520 24ikl firmware
- aio520 24iku firmware
- aio520 27ikl firmware
- c340 14iwl firmware
- c340 15iwl firmware
- e42 80 firmware
- e52 80 firmware
- flex 5 1570(r) firmware
- flex 6 1470 firmware
- flex 6 14ikb firmware
- flex 14iwl firmware
- flex 15iwl firmware
- h50 30g desktop firmware
- ideacentre 300 20ish firmware
- ideacentre 300s 11ish firmware
- ideacentre 310s 08asr firmware
- ideacentre 310s 08igm firmware
- ideacentre 510 15icb firmware
- ideacentre 510a 15icb firmware
- ideacentre 510s 08ish firmware
- ideacentre 700 firmware
- ideacentre 720 18apr firmware
- ideacentre 720 18icb firmware
- ideacentre 730s 24ikb firmware
- k43c 80 firmware
- l340 15irh firmware
- l340 15iwl firmware
- l340 15iwltouch firmware
- l340 17irh firmware
- l340 17iwl firmware
- legion c530 19icb firmware
- legion c730 19ico firmware
- legion t530 28apr firmware
- legion t530 28apr reflash firmware
- legion t530 28icb firmware
- legion t530 28icb reflash firmware
- legion t730 28ico firmware
- legion y520t z370 firmware
- legion y530 15ich firmware
- legion y530 15ich(1060) firmware
- legion y7000p 1060 firmware
- legion y730 15ich firmware
- legion y730 17ich firmware
- legion y740 15ichg firmware
- legion y740 15irhg firmware
- legion y740 17ichg firmware
- legion y740 17irhg firmware
- legion y9000k 2019 firmware
- legion y9000p 2019 firmware
- lenovo v720 14ikb firmware
- m4500 firmware
- m4500 id firmware
- m4550 id firmware
- miix 720 12ikb firmware
- qitian 4500 firmware
- qitian a815 firmware
- qitian b4550 firmware
- qitian b4650 firmware
- qitian b5900 firmware
- qitian m4550 firmware
- qitian m4600 firmware
- qitian m4650 firmware
- qt a7400 firmware
- qt b415 firmware
- qt m410 firmware
- qt m415 firmware
- rescuer y7000 firmware
- rescuer y7000(1060) firmware
- rescuer y7000p firmware
- rescuer y7000p(1060) firmware
- s145 14ikb firmware
- s145 14iwl firmware
- s145 15ikb firmware
- s145 15iwl firmware
- s340 14iwl firmware
- s340 14iwl touch firmware
- s340 15iwl firmware
- s340 15iwl touch firmware
- s530 13iwl firmware
- s540 14iwl firmware
- s540 14iwl touch firmware
- s540 15iwl firmware
- s940 14iwl firmware
- thinkcentre e73 firmware
- thinkcentre e73s firmware
- thinkcentre e74 firmware
- thinkcentre e74s firmware
- thinkcentre e74z firmware
- thinkcentre e75s firmware
- thinkcentre e75t firmware
- thinkcentre e93 firmware
- thinkcentre e95z firmware
- thinkcentre e96z firmware
- thinkcentre m4500k firmware
- thinkcentre m4500q firmware
- thinkcentre m4500s firmware
- thinkcentre m4500t firmware
- thinkcentre m4600s firmware
- thinkcentre m4600t firmware
- thinkcentre m600 firmware
- thinkcentre m610 firmware
- thinkcentre m625q firmware
- thinkcentre m6500s firmware
- thinkcentre m6500t firmware
- thinkcentre m6600 firmware
- thinkcentre m6600q firmware
- thinkcentre m6600s firmware
- thinkcentre m6600t firmware
- thinkcentre m700q firmware
- thinkcentre m700s firmware
- thinkcentre m700t firmware
- thinkcentre m700z firmware
- thinkcentre m710e firmware
- thinkcentre m710q firmware
- thinkcentre m710s firmware
- thinkcentre m710t firmware
- thinkcentre m715q firmware
- thinkcentre m715q rr firmware
- thinkcentre m715s firmware
- thinkcentre m715t firmware
- thinkcentre m720q firmware
- thinkcentre m720s firmware
- thinkcentre m720t firmware
- thinkcentre m725s firmware
- thinkcentre m73 firmware
- thinkcentre m73 tiny firmware
- thinkcentre m7300z firmware
- thinkcentre m73p firmware
- thinkcentre m79 firmware
- thinkcentre m800 firmware
- thinkcentre m800z firmware
- thinkcentre m810z firmware
- thinkcentre m818z firmware
- thinkcentre m820z firmware
- thinkcentre m83 firmware
- thinkcentre m8300z firmware
- thinkcentre m8350z firmware
- thinkcentre m83z (aio) firmware
- thinkcentre m8500s firmware
- thinkcentre m8500t firmware
- thinkcentre m8600s firmware
- thinkcentre m8600t firmware
- thinkcentre m900 firmware
- thinkcentre m900z firmware
- thinkcentre m90n 1 firmware
- thinkcentre m910q firmware
- thinkcentre m910s firmware
- thinkcentre m910t firmware
- thinkcentre m910x firmware
- thinkcentre m910z firmware
- thinkcentre m920q firmware
- thinkcentre m920s firmware
- thinkcentre m920t firmware
- thinkcentre m920x firmware
- thinkcentre m920z firmware
- thinkcentre m93 firmware
- thinkcentre m9350z firmware
- thinkcentre m93p firmware
- thinkcentre m93z (aio) firmware
- thinkcentre m9500z firmware
- thinkcentre m9550z firmware
- thinkcentre s510 firmware
- thinkcentre x1 aio firmware
- thinkpad 10 firmware
- thinkpad 11e firmware
- thinkpad 13 firmware
- thinkpad e450 firmware
- thinkpad e450c firmware
- thinkpad e460 firmware
- thinkpad e470 firmware
- thinkpad e480 firmware
- thinkpad e490 firmware
- thinkpad e490s firmware
- thinkpad e550 firmware
- thinkpad e550c firmware
- thinkpad e560 firmware
- thinkpad e560p firmware
- thinkpad e570 firmware
- thinkpad e580 firmware
- thinkpad e590 firmware
- thinkpad helix firmware
- thinkpad l380 firmware
- thinkpad l380 yoga firmware
- thinkpad l390 yoga firmware
- thinkpad l450 firmware
- thinkpad l460 firmware
- thinkpad l470 firmware
- thinkpad l480 firmware
- thinkpad l490 firmware
- thinkpad l560 firmware
- thinkpad l570 firmware
- thinkpad l580 firmware
- thinkpad l590 firmware
- thinkpad p1 firmware
- thinkpad p43s (20rx) firmware
- thinkpad p50 firmware
- thinkpad p50s firmware
- thinkpad p51 firmware
- thinkpad p51s firmware
- thinkpad p52 firmware
- thinkpad p52s firmware
- thinkpad p53 firmware
- thinkpad p53s firmware
- thinkpad p70 firmware
- thinkpad p71 firmware
- thinkpad p72 firmware
- thinkpad p73 firmware
- thinkpad r490 firmware
- thinkpad r590 firmware
- thinkpad s1 3rd firmware
- thinkpad s1 yoga firmware
- thinkpad s2 yoga 3rd gen firmware
- thinkpad s2 yoga 4th gen firmware
- thinkpad s3 3rd gen firmware
- thinkpad s3 firmware
- thinkpad s5 2nd generation firmware
- thinkpad s5 firmware
- thinkpad s5 yoga 15 firmware
- thinkpad s531 firmware
- thinkpad s540 firmware
- thinkpad t25 firmware
- thinkpad t440 firmware
- thinkpad t440p firmware
- thinkpad t440s firmware
- thinkpad t450 firmware
- thinkpad t450s firmware
- thinkpad t460 firmware
- thinkpad t460p firmware
- thinkpad t460s firmware
- thinkpad t470 firmware
- thinkpad t470p firmware
- thinkpad t470s firmware
- thinkpad t480 firmware
- thinkpad t480s firmware
- thinkpad t490 firmware
- thinkpad t490s firmware
- thinkpad t540p firmware
- thinkpad t550 firmware
- thinkpad t560 firmware
- thinkpad t570 firmware
- thinkpad t580 firmware
- thinkpad t590 firmware
- thinkpad tablet 10 firmware
- thinkpad tablet 8 firmware
- thinkpad w540 firmware
- thinkpad w541 firmware
- thinkpad w550s firmware
- thinkpad x1 carbon firmware
- thinkpad x1 extreme firmware
- thinkpad x1 tablet firmware
- thinkpad x1 yoga firmware
- thinkpad x131e firmware
- thinkpad x140e firmware
- thinkpad x240 firmware
- thinkpad x240s firmware
- thinkpad x250 firmware
- thinkpad x260 firmware
- thinkpad x270 firmware
- thinkpad x280 firmware
- thinkpad x380 yoga firmware
- thinkpad x390 firmware
- thinkpad x390 yoga firmware
- thinkpad yoga 11e firmware
- thinkpad yoga 260 s1 firmware
- thinkpad yoga 370 firmware
- thinkstation e32 firmware
- thinkstation p300 firmware
- thinkstation p310 firmware
- thinkstation p318 firmware
- thinkstation p320 firmware
- thinkstation p320 tiny firmware
- thinkstation p330 firmware
- thinkstation p330 tiny firmware
- thinksystem hr630x (skl) firmware
- thinksystem hr650x (skl) firmware
- thinksystem odc5200 cn650s firmware
- v110 14ikb firmware
- v110 15ikb firmware
- v130 14ikb firmware
- v130 15ikb firmware
- v310 14ikb firmware
- v310 14isk firmware
- v310 15ikb firmware
- v310 15isk firmware
- v310z(yt s3150) firmware
- v320 14ikb firmware
- v320 15ikb firmware
- v320 17ikbr firmware
- v330 14ikb firmware
- v330 14isk firmware
- v330 15igm firmware
- v330 15ikb firmware
- v330 15isk firmware
- v410z(yt s4250) firmware
- v510 14ikb firmware
- v510 15ikb firmware
- v510z (yt s5250) firmware
- v520s 08ikl firmware
- v520t 15ikl firmware
- v530 22icb(yt s4350) firmware
- v530 24icb(yt s5350) firmware
- v530s 07icb firmware
- v540 24iwl(yt s5430) firmware
- v730 15ikb firmware
- wei5 14ikb firmware
- wei5 15ikb firmware
- xiaoxin air 13iwl firmware
- xiaoxin air 14ikbr firmware
- xiaoxin air 14iwl firmware
- xiaoxin air 15ikbr firmware
- xiaoxin air 15iwl firmware
- xiaoxin air 14iwl 2019 firmware
- xiaoxin air 15iwl 2019 firmware
- xiaoxin tide 7000 15 u22 firmware
- xiaoxin tide 7000 15 u42 firmware
- xiaoxin 14 2019iwl firmware
- xiaoxin 14iwl qc 2019 firmware
- xiaoxin 15 2019iwl firmware
- xx chao5000 ikbra firmware
- y7000 2019 1050 firmware
- yangtian afh110 firmware
- yangtian afh81 firmware
- yangtian afq150 firmware
- yangtian mc h110 firmware
- yangtian mc h110 pci firmware
- yangtian mc h81 firmware
- yangtian me h110 firmware
- yangtian mf h110 pci firmware
- yangtian mf h81 pci firmware
- yangtian ms h81 firmware
- yangtian tc h110 pci firmware
- yangtian tc h81 pci firmware
- yangtian wc h110 pci firmware
- yangtian wcc h81 pci firmware
- yangtian we h110 firmware
- yangtian wf h110 pci firmware
- yangtian wf h81 pci firmware
- yangtian ws h81 firmware
- yangtian ytm6900e 00 firmware
- yoga 11e 3rd gen firmware
- yoga 11e 4th gen firmware
- yoga 520 14ikb firmware
- yoga 730 13ikb firmware
- yoga 730 13iwl firmware
- yoga 730 15ikb firmware
- yoga 730 15iwl firmware
- yoga s730 13iwl firmware
- yoga s940 14iwl firmware
- yoga530 14ikb firmware
- yogo a940 27icb firmware
- yta8900f firmware
- zhaoyang e43 80 kbl firmware
- zhaoyang e53 80 firmware
- zhaoyang k42 80 firmware
References
Additional Info
Authenticated
Unknown
Exploitable
Unknown
Reliability
Unknown
Stability
Unknown
Available Mitigations
Unknown
Shelf Life
Unknown
Userbase/Installbase
Unknown
Patch Effectiveness
Unknown
Rapid7
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: