CVE-2021-4212
—CVSS 3.1
6.7 medium
EPSS
<1%p16
Published
()
Modified
Description
A potential vulnerability in the SMI callback function used in the Legacy BIOS mode driver in some Lenovo Notebook models may allow an attacker with local access and elevated privileges to execute arbitrary code.
- Vendors
- lenovo
- Products
- c340-14iml firmware, c340-15iml firmware, d330-10igm firmware, duet 3-10igl5 firmware, e41-50 firmware, flex-14iml firmware, flex-15iml firmware, ideapad 3-14are05 firmware, ideapad 3-15are05 firmware, ideapad 3-17are05 firmware, ideapad 5-14alc05 firmware, ideapad 5-14are05 firmware
- Weakness
- CWE-20
- Vector
- CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.