High severity7.3NVD Advisory· Published Nov 8, 2023· Updated Jun 17, 2026
CVE-2023-4706
CVE-2023-4706
Description
A privilege escalation vulnerability was reported in Lenovo preloaded devices deployed using Microsoft AutoPilot under a standard user account due to incorrect default privileges.
Affected products
3cpe:2.3:a:lenovo:preload_directory:-:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:lenovo:preload_directory:-:*:*:*:*:*:*:*
- (no CPE)range: Refer to Mitigation strategy section in LEN-127385
Patches
Vulnerability mechanics
References
1- support.lenovo.com/us/en/product_security/LEN-127385nvdVendor Advisory
News mentions
0No linked articles in our index yet.