ZeroHour

CVE-2020-8320

CVSS 3.1
6.8 medium
EPSS
<1%p21
Published
()
Modified
Description

An internal shell was included in BIOS image in some ThinkPad models that could allow escalation of privilege.

Vendors
lenovo
Products
thinkpad 11e yoga gen 6 firmware, thinkpad 11e firmware, thinkpad yoga 11e 3rd gen firmware, thinkpad yoga 11e 4th gen firmware, thinkpad yoga 11e 5th gen firmware, thinkpad 13 2nd gen firmware, thinkpad 13 firmware, thinkpad a275 firmware, thinkpad a285 firmware, thinkpad a475 firmware, thinkpad a485 firmware, thinkpad e14 firmware
Weakness
CWE-489, CWE-269
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.