ZeroHour

CVE-2017-3756

CVSS 3.0
7.8 high
EPSS
<1%p31
Published
()
Modified
Description

A privilege escalation vulnerability was identified in Lenovo Active Protection System for ThinkPad systems versions earlier than 1.82.0.17. An attacker with local privileges could execute code with administrative privileges via an unquoted service path.

Vendors
lenovo
Products
thinkpad 10 ella 2 bios, thinkpad 11e beema bios, thinkpad 11e braswell bios, thinkpad 11e broadwell bios, thinkpad 11e skylake bios, thinkpad 13e bios, thinkpad e450 bios, thinkpad e450c bios, thinkpad e455 bios, thinkpad e460 bios, thinkpad e465 bios, thinkpad e550 bios
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.