CVE-2020-8320
—CVSS 3.1
6.8 medium
EPSS
<1%p21
Published
()
Modified
Description
An internal shell was included in BIOS image in some ThinkPad models that could allow escalation of privilege.
- Vendors
- lenovo
- Products
- thinkpad 11e yoga gen 6 firmware, thinkpad 11e firmware, thinkpad yoga 11e 3rd gen firmware, thinkpad yoga 11e 4th gen firmware, thinkpad yoga 11e 5th gen firmware, thinkpad 13 2nd gen firmware, thinkpad 13 firmware, thinkpad a275 firmware, thinkpad a285 firmware, thinkpad a475 firmware, thinkpad a485 firmware, thinkpad e14 firmware
- Weakness
- CWE-489, CWE-269
- Vector
- CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.