ZeroHour

CVE-2020-8323

CVSS 3.1
6.7 medium
EPSS
<1%p26
Published
()
Modified
Description

A potential vulnerability in the SMI callback function used in the Legacy SD driver in some Lenovo ThinkPad, ThinkStation, and Lenovo Notebook models may allow arbitrary code execution.

Vendors
lenovo
Products
330-14ast firmware, 330-15ast firmware, 330-17ast firmware, 340c-15api firmware, 340c-15ast firmware, 720s touch-15ikb firmware, 720s-15ikb firmware, 730s-13iwl firmware, c640-iml firmware, e42-80 firmware, e52-80 firmware, k22-80 firmware
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.