7.8

CVE-2016-5247

The BIOS for Lenovo ThinkCentre E93, M6500t/s, M6600, M6600q, M6600t/s, M73p, M800, M83, M8500t/s, M8600t/s, M900, M93, and M93P devices; ThinkServer RQ940, RS140, TS140, TS240, TS440, and TS540 devices; and ThinkStation E32, P300, and P310 devices might allow local users or physically proximate attackers to bypass the Secure Boot protection mechanism by leveraging an AMI test key.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Lenovo ≫ Bios Version -
   Lenovo ≫ Thinkcentre E93 Version -
   Lenovo ≫ Thinkcentre M6600 Version -
   Lenovo ≫ Thinkcentre M6600q Version -
   Lenovo ≫ Thinkcentre M73p Version -
   Lenovo ≫ Thinkcentre M800 Version -
   Lenovo ≫ Thinkcentre M83 Version -
   Lenovo ≫ Thinkcentre M900 Version -
   Lenovo ≫ Thinkcentre M93 Version -
   Lenovo ≫ Thinkcentre M93p Version -
   Lenovo ≫ Thinkserver Rq940 Version -
   Lenovo ≫ Thinkserver Rs140 Version -
   Lenovo ≫ Thinkserver Ts140 Version -
   Lenovo ≫ Thinkserver Ts240 Version -
   Lenovo ≫ Thinkserver Ts440 Version -
   Lenovo ≫ Thinkserver Ts540 Version -
   Lenovo ≫ Thinkstation E32 Version -
   Lenovo ≫ Thinkstation P300 Version -
   Lenovo ≫ Thinkstation P310 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.38% 0.295
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
NIST 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.securityfocus.com/bid/92661
Third Party Advisory
https://support.lenovo.com/product_security/PS500067
Vendor Advisory
Mitigation