CVE-2021-3719
—CVSS 3.1
6.7 medium
EPSS
<1%p16
Published
()
Modified
Description
A potential vulnerability in the SMI callback function that saves and restore boot script tables used for resuming from sleep state in some ThinkCentre and ThinkStation models may allow an attacker with local access and elevated privileges to execute arbitrary code.
- Vendors
- lenovo
- Products
- thinkcentre e93 firmware, thinkcentre m600 firmware, thinkcentre m700 tiny firmware, thinkcentre m73 firmware, thinkcentre m73p firmware, thinkcentre m800 firmware, thinkcentre m818z firmware, thinkcentre m83 firmware, thinkcentre m900 firmware, thinkcentre m900x firmware, thinkcentre m93 firmware, thinkcentre m93p firmware
- Weakness
- CWE-20
- Vector
- CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.