VYPR

Vendor CVEs

Lenovo

All CVEs

536 total · sorted by risk
  • CVE-2019-10724MedAug 29, 2019
    risk 0.42cvss 6.5epss 0.01

    There is a vulnerability with the Dolby DAX2 API system services in which a low-privileged user can terminate arbitrary processes that are running at a higher privilege. The following are affected products and versions: Legion Y520T_Z370 6.0.1.8642, AIO310-20IAP 6.0.1.8642,…

  • CVE-2019-6157MedApr 22, 2019
    risk 0.42cvss 6.5epss 0.01

    In various firmware versions of Lenovo System x, the integrated management module II (IMM2)'s first failure data capture (FFDC) includes the web server's private key in the generated log file for support.

  • CVE-2018-9072MedNov 30, 2018
    risk 0.42cvss 6.5epss 0.01

    In versions prior to 5.5, LXCI for VMware allows an authenticated user to download any system file due to insufficient input sanitization during file downloads.

  • CVE-2018-16097MedNov 30, 2018
    risk 0.42cvss 6.5epss 0.00

    LXCI for VMware versions prior to 5.5 and LXCI for Microsoft System Center versions prior to 3.5, allow an authenticated user to write to any system file due to insufficient sanitization during the upload of a certificate.

  • CVE-2018-16093MedNov 30, 2018
    risk 0.42cvss 6.5epss 0.01

    In versions prior to 5.5, LXCI for VMware allows an authenticated user to write to any system file due to insufficient sanitization during the upload of a backup file.

  • CVE-2018-9084MedNov 27, 2018
    risk 0.42cvss 6.5epss 0.01

    In System Management Module (SMM) versions prior to 1.06, if an attacker manages to log in to the device OS, the validation of software updates can be circumvented.

  • CVE-2018-9074MedSep 28, 2018
    risk 0.42cvss 6.5epss 0.01

    For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, the file upload functionality of the Content Explorer application is vulnerable to path traversal. As a result, users can upload files anywhere on the device's operating system as the root user.

  • CVE-2018-9070MedJul 13, 2018
    risk 0.42cvss 6.4epss 0.00

    For the Lenovo Smart Assistant Android app versions earlier than 12.1.82, an attacker with physical access to the smart speaker can, by pressing a specific button sequence, enter factory test mode and enable a web service intended for testing the device. As with most test modes,…

  • CVE-2017-3775MedMay 4, 2018
    risk 0.42cvss 6.4epss 0.00

    Some Lenovo System x server BIOS/UEFI versions, when Secure Boot mode is enabled by a system administrator, do not properly authenticate signed code before booting it. As a result, an attacker with physical access to the system could boot unsigned code.

  • CVE-2017-3750MedJun 29, 2017
    risk 0.42cvss 6.4epss 0.00

    On Lenovo VIBE mobile phones, the Lenovo Security Android application allows private data to be backed up and restored via Android Debug Bridge, which allows tampering leading to privilege escalation in conjunction with CVE-2017-3748 and CVE-2017-3749.

  • CVE-2017-3749MedJun 29, 2017
    risk 0.42cvss 6.4epss 0.00

    On Lenovo VIBE mobile phones, the Idea Friend Android application allows private data to be backed up and restored via Android Debug Bridge, which allows tampering leading to privilege escalation in conjunction with CVE-2017-3748 and CVE-2017-3750.

  • CVE-2017-3744MedJun 20, 2017
    risk 0.42cvss 6.5epss 0.01

    In the IMM2 firmware of Lenovo System x servers, remote commands issued by LXCA or other utilities may be captured in the First Failure Data Capture (FFDC) service log if the service log is generated when that remote command is running. Captured command data may contain clear…

  • CVE-2016-6257MedAug 2, 2016
    risk 0.42cvss 6.5epss 0.01

    The firmware in Lenovo Ultraslim dongles, as used with Lenovo Liteon SK-8861, Ultraslim Wireless, and Silver Silk keyboards and Liteon ZTM600 and Ultraslim Wireless mice, does not enforce incrementing AES counters, which allows remote attackers to inject encrypted keyboard input…

  • CVE-2024-45104MedSep 13, 2024
    risk 0.41cvss 6.3epss 0.00

    A valid, authenticated LXCA user without sufficient privileges may be able to use the device identifier to modify an LXCA managed device through a specially crafted web API call.

  • CVE-2024-23592MedApr 5, 2024
    risk 0.41cvss 6.3epss 0.00

    An authentication bypass vulnerability was reported in Lenovo devices with Synaptics fingerprint readers that could allow an attacker with physical access to replay fingerprints and bypass Windows Hello authentication.

  • CVE-2023-6044MedJan 19, 2024
    risk 0.41cvss 6.3epss 0.00

    A privilege escalation vulnerability was reported in Lenovo Vantage that could allow a local attacker with physical access to impersonate Lenovo Vantage Service and execute arbitrary code with elevated privileges.

  • CVE-2023-25492MedMay 1, 2023
    risk 0.41cvss 6.3epss 0.01

    A valid, authenticated user may be able to trigger a denial of service of the XCC web user interface or other undefined behavior through a format string injection vulnerability in a web interface API.

  • CVE-2021-42851MedMay 18, 2022
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow an unauthenticated user to create a standard user account.

  • CVE-2020-8340MedSep 15, 2020
    risk 0.41cvss 6.3epss 0.01

    A cross-site scripting (XSS) vulnerability was discovered in the legacy IBM and Lenovo System x IMM2 (Integrated Management Module 2), prior to version 5.60, embedded Baseboard Management Controller (BMC) web interface during an internal security review. This vulnerability could…

  • CVE-2026-16792MedAug 4, 2026
    risk 0.40cvss 6.1epss 0.00

    An improper certificate validation vulnerability was reported in multiple Lenovo XClarity Orchestrator (LXCO) 2.2.0 microservices that could allow an adjacent network attacker to intercept sensitive communications by performing a machine-in-the-middle attack against HTTPS…

  • CVE-2026-1652MedMar 11, 2026
    risk 0.40cvss 6.1epss 0.00

    A potential buffer overflow vulnerability was reported in the Lenovo Virtual Bus driver used in Smart Connect that could allow a local authenticated user to corrupt memory and cause a Windows blue screen error.

  • CVE-2022-3702MedOct 27, 2023
    risk 0.40cvss 6.1epss 0.00

    A denial of service vulnerability was reported in Lenovo Vantage HardwareScan Plugin version 1.3.0.5 and earlier that could allow a local attacker to delete contents of an arbitrary directory under certain conditions.

  • CVE-2022-3700MedOct 27, 2023
    risk 0.40cvss 6.1epss 0.00

    A Time of Check Time of Use (TOCTOU) vulnerability was reported in the Lenovo Vantage SystemUpdate Plugin version 2.0.0.212 and earlier that could allow a local attacker to delete arbitrary files.

  • CVE-2022-48183MedOct 9, 2023
    risk 0.40cvss 6.1epss 0.00

    A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism to not trigger under specific circumstances which could allow unauthorized access.

  • CVE-2022-48182MedOct 9, 2023
    risk 0.40cvss 6.1epss 0.00

    A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism to not trigger under specific circumstances which could allow unauthorized access.

  • CVE-2022-3728MedOct 9, 2023
    risk 0.40cvss 6.1epss 0.00

    A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism to not trigger under specific circumstances which could allow unauthorized access.

  • CVE-2022-48186MedMay 1, 2023
    risk 0.40cvss 6.2epss 0.00

    A certificate validation vulnerability exists in the Baiying Android application which could lead to information disclosure.

  • CVE-2022-4816MedJan 23, 2023
    risk 0.40cvss 6.2epss 0.00

    A denial-of-service vulnerability has been identified in Lenovo Safecenter that could allow a local user to crash the application.

  • CVE-2020-8348MedSep 24, 2020
    risk 0.40cvss 6.1epss 0.01

    A DOM-based cross-site scripting (XSS) vulnerability was reported in Lenovo Enterprise Network Disk prior to version 6.1 patch 6 hotfix 4 that could allow execution of code in an authenticated user's current browser session if a crafted url is visited, possibly through phishing.

  • CVE-2020-8347MedSep 24, 2020
    risk 0.40cvss 6.1epss 0.01

    A reflective cross-site scripting (XSS) vulnerability was reported in Lenovo Enterprise Network Disk prior to version 6.1 patch 6 hotfix 4 that could allow execution of code in an authenticated user's browser if a crafted url is visited, possibly through phishing.

  • CVE-2020-8335MedSep 1, 2020
    risk 0.40cvss 6.1epss 0.00

    The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad A285, BIOS versions up to r0xuj70w; A485, BIOS versions up to r0wuj65w; T495 BIOS versions up to r12uj55w; T495s/X395, BIOS versions up to r13uj47w, while the emergency-reset button is pressed which may…

  • CVE-2020-8334MedJun 9, 2020
    risk 0.40cvss 6.1epss 0.00

    The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized access.

  • CVE-2019-19758MedFeb 14, 2020
    risk 0.40cvss 6.1epss 0.01

    A vulnerability in the web interface of Lenovo EZ Media & Backup Center, ix2 & ix2-dl version 4.1.406.34763 and prior could allow an unauthenticated, remote attacker to redirect a user to an untrusted web page.

  • CVE-2019-6181MedSep 3, 2019
    risk 0.40cvss 6.1epss 0.01

    A reflected cross-site scripting (XSS) vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.5.0 that could allow a crafted URL, if visited, to cause JavaScript code to be executed in the user's web browser. The JavaScript code is not executed on…

  • CVE-2019-6159MedAug 19, 2019
    risk 0.40cvss 6.1epss 0.01

    A stored cross-site scripting (XSS) vulnerability exists in various firmware versions of the legacy IBM System x IMM (IMM v1) embedded Baseboard Management Controller (BMC). This vulnerability could allow an unauthenticated user to cause JavaScript code to be stored in the IMM…

  • CVE-2018-16096MedNov 27, 2018
    risk 0.40cvss 6.1epss 0.01

    In System Management Module (SMM) versions prior to 1.06, the SMM web interface for changing Enclosure VPD fails to sufficiently sanitize all input for HTML tags, possibly opening a path for cross-site scripting.

  • CVE-2016-8232MedMar 1, 2017
    risk 0.40cvss 6.1epss 0.01

    Document Object Model-(DOM) based cross-site scripting vulnerability in the Advanced Management Module (AMM) versions earlier than 66Z of Lenovo IBM BladeCenter HS22, HS22V, HS23, HS23E, HX5 allows an unauthenticated attacker with access to the AMM's IP address to send a crafted…

  • CVE-2016-4783MedMay 23, 2016
    risk 0.40cvss 6.1epss 0.01

    Cross-site scripting (XSS) vulnerability in Lenovo SHAREit before 3.5.98_ww on Android before 4.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Universal XSS (UXSS)."

  • CVE-2016-1492MedJan 26, 2016
    risk 0.40cvss 6.1epss 0.02

    The Wifi hotspot in Lenovo SHAREit before 3.5.48_ww for Android, when configured to receive files, does not require a password, which makes it easier for remote attackers to obtain access by leveraging a position within the WLAN coverage area.

  • CVE-2025-4426MedJul 30, 2025
    risk 0.39cvss 6.0epss 0.00

    The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Advisories and Announcements" webpage for more information about the vulnerability.  https://support.lenovo.com/us/en/product_security/home

  • CVE-2025-4424MedJul 30, 2025
    risk 0.39cvss 6.0epss 0.00

    The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Advisories and Announcements" webpage for more information about the vulnerability.  https://support.lenovo.com/us/en/product_security/home

  • CVE-2019-18618MedJul 22, 2020
    risk 0.39cvss 6.0epss 0.01

    Incorrect access control in the firmware of Synaptics VFS75xx family fingerprint sensors that include external flash (all versions prior to 2019-11-15) allows a local administrator or physical attacker to compromise the confidentiality of sensor data via injection of an…

  • CVE-2016-8106MedJan 9, 2017
    risk 0.39cvss 5.9epss 0.05

    A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows a remote attacker to stop the controller from processing network traffic working under certain network use conditions.

  • CVE-2016-1344MedMar 26, 2016
    risk 0.39cvss 5.9epss 0.03

    The IKEv2 implementation in Cisco IOS 15.0 through 15.6 and IOS XE 3.3 through 3.17 allows remote attackers to cause a denial of service (device reload) via fragmented packets, aka Bug ID CSCux38417.

  • CVE-2018-16095MedNov 27, 2018
    risk 0.38cvss 5.9epss 0.01

    In System Management Module (SMM) versions prior to 1.06, the SMM records hashed passwords to a debug log when user authentication fails.

  • CVE-2018-9073MedNov 16, 2018
    risk 0.38cvss 5.9epss 0.01

    Lenovo Chassis Management Module (CMM) prior to version 2.0.0 utilizes a hardcoded encryption key to protect certain secrets. Possession of the key can allow an attacker that has already compromised the server to decrypt these secrets.

  • CVE-2018-9069MedOct 2, 2018
    risk 0.38cvss 5.9epss 0.01

    In some Lenovo IdeaPad consumer notebook models, a race condition in the BIOS flash device locking mechanism is not adequately protected against, potentially allowing an attacker with administrator access to alter the contents of BIOS.

  • CVE-2018-9080MedSep 28, 2018
    risk 0.38cvss 5.9epss 0.01

    For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, by setting the Iomega cookie to a known value before logging into the NAS's web application, the NAS will not provide the user a new cookie value. This allows an attacker who knows the cookie's…

  • CVE-2019-6194MedFeb 14, 2020
    risk 0.37cvss 5.7epss 0.01

    An XML External Entity (XXE) processing vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.6.6 that could allow information disclosure.

  • CVE-2026-2640MedMar 11, 2026
    risk 0.36cvss 5.5epss 0.00

    During an internal security assessment, a potential vulnerability was discovered in Lenovo PC Manager that could allow a local authenticated user to terminate privileged processes.

Page 8 of 11