ZeroHour

CVE-2021-3719

CVSS 3.1
6.7 medium
EPSS
<1%p16
Published
()
Modified
Description

A potential vulnerability in the SMI callback function that saves and restore boot script tables used for resuming from sleep state in some ThinkCentre and ThinkStation models may allow an attacker with local access and elevated privileges to execute arbitrary code.

Vendors
lenovo
Products
thinkcentre e93 firmware, thinkcentre m600 firmware, thinkcentre m700 tiny firmware, thinkcentre m73 firmware, thinkcentre m73p firmware, thinkcentre m800 firmware, thinkcentre m818z firmware, thinkcentre m83 firmware, thinkcentre m900 firmware, thinkcentre m900x firmware, thinkcentre m93 firmware, thinkcentre m93p firmware
Weakness
CWE-20
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.