VYPR

Lenovo Vantage

by Lenovo

CVEs (4)

  • CVE-2026-1716HigMar 11, 2026
    risk 0.46cvss 7.1epss 0.00

    An input validation vulnerability was reported in the DeviceSettingsSystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to delete arbitrary registry keys with elevated privileges.

  • CVE-2026-1715HigMar 11, 2026
    risk 0.46cvss 7.1epss 0.00

    An input validation vulnerability was reported in the DeviceSettingsSystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to modify arbitrary registry keys with elevated privileges.

  • CVE-2026-15994HigAug 13, 2026
    risk 0.45cvss 7.0epss

    During an internal security assessment, an improper link following vulnerability was identified in Lenovo Vantage and Lenovo Commercial Vantage that could allow a local authenticated user to execute code with elevated privileges.

  • CVE-2026-1717MedMar 11, 2026
    risk 0.36cvss 5.5epss 0.00

    An input validation vulnerability was reported in the LenovoProductivitySystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to terminate arbitrary processes with elevated privileges.