← Back

System Interface Foundation

system_interface_foundation

Vendor: Lenovo • 9 CVEs

CVEs (9)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Lenovo
1System Interface Foundation
Nov 21, 2024
May 18, 2022
N/A· v4
7.0 HIGH· v3
4.4 MEDIUM· v2
A Time of Check Time of Use (TOCTOU) vulnerability was reported in IMController, a software component of Lenovo System Interface Foundation, prior to version 1.1.20.3that could allow a local attacker to elevate privilege...Show more
A Time of Check Time of Use (TOCTOU) vulnerability was reported in IMController, a software component of Lenovo System Interface Foundation, prior to version 1.1.20.3that could allow a local attacker to elevate privileges.Show less
1Lenovo
1System Interface Foundation
Nov 21, 2024
May 18, 2022
N/A· v4
7.0 HIGH· v3
4.4 MEDIUM· v2
A race condition vulnerability was reported in IMController, a software component of Lenovo System Interface Foundation, prior to version 1.1.20.3 that could allow a local attacker to connect and interact with the IMCont...Show more
A race condition vulnerability was reported in IMController, a software component of Lenovo System Interface Foundation, prior to version 1.1.20.3 that could allow a local attacker to connect and interact with the IMController child process' named pipe.Show less
1Lenovo
1System Interface Foundation
Nov 21, 2024
Sep 15, 2020
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
A denial of service vulnerability was reported in the Lenovo Vantage component called Lenovo System Interface Foundation prior to version 1.1.19.5 that could allow configuration files to be written to non-standard locati...Show more
A denial of service vulnerability was reported in the Lenovo Vantage component called Lenovo System Interface Foundation prior to version 1.1.19.5 that could allow configuration files to be written to non-standard locations.Show less
1Lenovo
1System Interface Foundation
Nov 21, 2024
Apr 14, 2020
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
A vulnerability was reported in LenovoAppScenarioPluginSystem for Lenovo System Interface Foundation prior to version 1.2.184.31 that could allow unsigned DLL files to be executed.
1Lenovo
1System Interface Foundation
Nov 21, 2024
Apr 14, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
A privilege escalation vulnerability was reported in Lenovo System Interface Foundation prior to version 1.1.19.3 that could allow an authenticated user to execute code with elevated privileges.
1Lenovo
1System Interface Foundation
Nov 21, 2024
Apr 14, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
A privilege escalation vulnerability was reported in the LenovoSystemUpdatePlugin for Lenovo System Interface Foundation prior to version that could allow an authenticated user to execute code with elevated privileges.
1Lenovo
1System Interface Foundation
Nov 21, 2024
Nov 20, 2019
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
A potential vulnerability was reported in Lenovo System Interface Foundation versions before v1.1.18.3 that could allow an administrative user to load an unsigned DLL.
1Lenovo
1System Interface Foundation
Nov 21, 2024
Nov 20, 2019
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
A potential vulnerability was reported in Lenovo System Interface Foundation versions before v1.1.18.3 that could allow an authenticated user to execute code as another user.
1Lenovo
1System Interface Foundation
May 6, 2026
Nov 29, 2016
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
During an internal security review, Lenovo identified a local privilege escalation vulnerability in Lenovo System Interface Foundation software installed on some Windows 10 PCs where a user with local privileges could ru...Show more
During an internal security review, Lenovo identified a local privilege escalation vulnerability in Lenovo System Interface Foundation software installed on some Windows 10 PCs where a user with local privileges could run arbitrary code with administrator level privileges.Show less