← Back

Installation Package

installation_package

Vendor: Lenovo • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Lenovo
1Installation Package
Nov 21, 2024
Jun 9, 2020
N/A· v4
7.3 HIGH· v3
6.9 MEDIUM· v2
A symbolic link vulnerability in some Lenovo installation packages, prior to version 1.2.9.3, could allow privileged file operations during file extraction and installation.
1Lenovo
1Installation Package
Nov 21, 2024
Jun 9, 2020
N/A· v4
6.5 MEDIUM· v3
6.9 MEDIUM· v2
A DLL search path vulnerability could allow privilege escalation in some Lenovo installation packages, prior to version 1.2.9.3, during installation if an attacker already has administrative privileges.