High severity7.5NVD Advisory· Published Mar 27, 2020· Updated Jun 17, 2026
CVE-2015-7336
CVE-2015-7336
Description
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A vulnerability was reported (fixed and publicly disclosed in 2015) in Lenovo System Update version 5.07.0008 and prior that could allow the signature check of an update to be bypassed.
Affected products
3cpe:2.3:a:lenovo:system_update:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:lenovo:system_update:*:*:*:*:*:*:*:*range: <=5.07.0008
- (no CPE)range: <=5.07.0008
- Lenovo/System Updatedescription
Patches
Vulnerability mechanics
References
1- support.lenovo.com/us/en/product_security/lsu_privilegenvdVendor Advisory
News mentions
0No linked articles in our index yet.