Medium severity6.7NVD Advisory· Published Jun 10, 2026· Updated Jun 10, 2026
CVE-2025-10237
CVE-2025-10237
Description
During an internal security assessment, a potential vulnerability was discovered in some ThinkPad embedded controller firmware that could allow a privileged local user to perform arbitrary reads or writes to privileged memory regions.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.