CVE-2022-3742
- EPSS 0.02%
- Published 23.08.2023 20:15:08
- Last modified 21.11.2024 07:20:09
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to execute arbitrary code due to improper buffer validation.
CVE-2022-3743
- EPSS 0.03%
- Published 23.08.2023 20:15:08
- Last modified 21.11.2024 07:20:09
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges under certain conditions the ability to enumerate Embedded Controller (EC) commands.
CVE-2022-3744
- EPSS 0.03%
- Published 23.08.2023 20:15:08
- Last modified 21.11.2024 07:20:09
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to unlock UEFI variables due to a hard-coded SMI handler credential.
CVE-2022-3745
- EPSS 0.03%
- Published 23.08.2023 20:15:08
- Last modified 21.11.2024 07:20:09
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to view incoming and returned data from SMI.
CVE-2022-3746
- EPSS 0.03%
- Published 23.08.2023 20:15:08
- Last modified 21.11.2024 07:20:09
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to cause some peripherals to work abnormally due to an exposed Embedded Controller (EC) interfac...
CVE-2023-34419
- EPSS 0.04%
- Published 17.08.2023 17:15:09
- Last modified 21.11.2024 08:07:12
A buffer overflow has been identified in the SetupUtility driver in some Lenovo Notebook products which may allow an attacker with local access and elevated privileges to execute arbitrary code.
CVE-2022-3430
- EPSS 0.04%
- Published 23.01.2023 17:15:10
- Last modified 21.11.2024 07:19:29
A potential vulnerability in the WMI Setup driver on some consumer Lenovo Notebook devices may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.