CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Lenovo 20Thinkcentre E93 Firmware Thinkcentre M4500q FirmwareThinkcentre M600 Firmware+17 moreNov 21, 2024 Nov 12, 2021 N/A· v4 6.7 MEDIUM· v3 7.2 HIGH· v2 A potential vulnerability in the SMI callback function that saves and restore boot script tables used for resuming from sleep state in some ThinkCentre and ThinkStation models may allow an attacker with local access and...Show more |
1Lenovo 16Qitian 4500 Firmware Qitian B4550 FirmwareQitian M4550 Firmware+13 moreNov 21, 2024 Nov 11, 2020 N/A· v4 2.4 LOW· v3 2.1 LOW· v2 In some Lenovo Desktop models, the Configuration Change Detection BIOS setting failed to detect SATA configuration changes. |
1Lenovo 392130 14ikb Firmware 130 15ikb Firmware330 14ikb Firmware+389 moreNov 21, 2024 Nov 12, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T460p, BIOS versions up to R07ET90W, and T470p, BIOS versions up to R0FET50W, which may allow for unauthorized access. |
1Lenovo 392130 14ikb Firmware 130 15ikb Firmware330 14ikb Firmware+389 moreNov 21, 2024 Nov 12, 2019 N/A· v4 6.4 MEDIUM· v3 4.4 MEDIUM· v2 A potential vulnerability in the SMI callback function used in Legacy USB driver using passed parameter without sufficient checking in some Lenovo ThinkPad models may allow arbitrary code execution. |
1Lenovo 392130 14ikb Firmware 130 15ikb Firmware330 14ikb Firmware+389 moreNov 21, 2024 Nov 12, 2019 N/A· v4 6.4 MEDIUM· v3 4.4 MEDIUM· v2 A potential vulnerability in the SMI callback function used in the Legacy USB driver using boot services structure in runtime phase in some Lenovo ThinkPad models may allow arbitrary code execution. |
1Lenovo 11163 Firmware H50 30g FirmwareIdeacentre 300 20ish Firmware+108 moreMay 13, 2026 Aug 10, 2017 N/A· v4 6.8 MEDIUM· v3 7.2 HIGH· v2 A vulnerability has been identified in some Lenovo products that use UEFI (BIOS) code developed by American Megatrends, Inc. (AMI). With this vulnerability, conditions exist where an attacker with administrative privileg...Show more |