Medium severity6.7NVD Advisory· Published Jan 26, 2023· Updated Jun 17, 2026
CVE-2022-3432
CVE-2022-3432
Description
A potential vulnerability in a driver used during manufacturing process on the Ideapad Y700-14ISK that was mistakenly not deactivated may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.
Affected products
3- cpe:2.3:o:lenovo:ideapad_y700-14isk_firmware:-:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- support.lenovo.com/us/en/product_security/LEN-94952nvdVendor Advisory
News mentions
0No linked articles in our index yet.