CVE-2026-1717
- EPSS 0.02%
- Veröffentlicht 11.03.2026 20:22:50
- Zuletzt bearbeitet 12.03.2026 21:08:22
An input validation vulnerability was reported in the LenovoProductivitySystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to terminate arbitrary processes with elevated privileges.
CVE-2026-1716
- EPSS 0.02%
- Veröffentlicht 11.03.2026 20:22:37
- Zuletzt bearbeitet 12.03.2026 21:08:22
An input validation vulnerability was reported in the DeviceSettingsSystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to delete arbitrary registry keys with elevated privileges.
CVE-2026-1715
- EPSS 0.02%
- Veröffentlicht 11.03.2026 20:22:24
- Zuletzt bearbeitet 12.03.2026 21:08:22
An input validation vulnerability was reported in the DeviceSettingsSystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to modify arbitrary registry keys with elevated privileges.
CVE-2025-13155
- EPSS 0.02%
- Veröffentlicht 10.12.2025 14:08:56
- Zuletzt bearbeitet 12.12.2025 15:18:42
An improper permissions vulnerability was reported in Lenovo Baiying Client that could allow a local authenticated user to execute code with elevated privileges.
CVE-2024-33579
- EPSS 0.02%
- Veröffentlicht 11.10.2024 16:15:05
- Zuletzt bearbeitet 15.10.2024 12:58:51
A DLL hijack vulnerability was reported in Lenovo Baiying that could allow a local attacker to execute code with elevated privileges.
CVE-2022-48186
- EPSS 0.1%
- Veröffentlicht 01.05.2023 15:15:09
- Zuletzt bearbeitet 30.01.2025 16:15:28
A certificate validation vulnerability exists in the Baiying Android application which could lead to information disclosure.