ZeroHour

CVE-2018-16098

CVSS 3.0
7.8 high
EPSS
<1%p33
Published
()
Modified
Description

In some Lenovo ThinkPads, an unquoted search path vulnerability was found in various versions of the Synaptics Pointing Device driver which could allow unauthorized code execution as a low privilege user.

Vendors
lenovo
Products
synaptics thinkpad ultranav driver, thinkpad helix firmware, thiankpad l430 firmware, thiankpad l530 firmware, thiankpad p1 firmware, thiankpad x1 extreme firmware, thiankpad p50s firmware, thiankpad p51 firmware, thiankpad p51s firmware, thiankpad p52s firmware, thiankpad p70 firmware, thiankpad s1 yoga firmware
Weakness
CWE-428
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.