CVE-2026-13104
- EPSS 0.11%
- Veröffentlicht 16.07.2026 16:49:06
- Zuletzt bearbeitet 16.07.2026 18:16:42
A potential vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could allow a local authenticated user to execute arbitrary code with elevated privileges.
CVE-2026-13103
- EPSS 0.13%
- Veröffentlicht 16.07.2026 16:49:00
- Zuletzt bearbeitet 16.07.2026 18:16:42
A potential path traversal vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could allow a local authenticated user to execute arbitrary code.
CVE-2026-9046
- EPSS 0.09%
- Veröffentlicht 16.07.2026 16:48:47
- Zuletzt bearbeitet 16.07.2026 19:16:51
A potential insecure permissions vulnerability was reported in Legion Zone and the Lenovo App Store Windows applications, distributed exclusively in the Chinese market, that when installed on a non‑system partition, could allow a local user to execut...
CVE-2025-12046
- EPSS 0.13%
- Veröffentlicht 10.12.2025 14:08:25
- Zuletzt bearbeitet 25.09.2026 23:10:00
A DLL hijacking vulnerability was reported in the Lenovo App Store and Lenovo Browser applications that could allow a local authenticated user to execute code with elevated privileges under certain conditions.
CVE-2025-10495
- EPSS 0.21%
- Veröffentlicht 12.11.2025 19:18:44
- Zuletzt bearbeitet 15.04.2026 00:35:42
A potential vulnerability was reported in the Lenovo PC Manager, Lenovo App Store, Lenovo Browser, and Lenovo Legion Zone client applications that, under certain conditions, could allow an attacker on the same logical network to execute arbitrary cod...
CVE-2025-8485
- EPSS 0.12%
- Veröffentlicht 12.11.2025 19:18:28
- Zuletzt bearbeitet 02.02.2026 15:39:07
An improper permissions vulnerability was reported in Lenovo App Store that could allow a local authenticated user to execute code with elevated privileges during installation of an application.
CVE-2025-4657
- EPSS 0.17%
- Veröffentlicht 17.07.2025 19:22:28
- Zuletzt bearbeitet 15.04.2026 00:35:42
A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5.1.1110.4231, used in Lenovo PC Manager, Lenovo Browser, and Lenovo App Store could allow a local attacker with elevated privileges to execute arbitrary c...
CVE-2024-10254
- EPSS 0.13%
- Veröffentlicht 14.01.2025 22:15:26
- Zuletzt bearbeitet 15.04.2026 00:35:42
A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause a system crash.
CVE-2024-10253
- EPSS 0.12%
- Veröffentlicht 14.01.2025 22:15:25
- Zuletzt bearbeitet 15.04.2026 00:35:42
A potential TOCTOU vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause a system crash.
CVE-2024-4130
- EPSS 0.17%
- Veröffentlicht 11.10.2024 16:15:13
- Zuletzt bearbeitet 17.10.2024 19:41:06
A DLL hijack vulnerability was reported in Lenovo App Store that could allow a local attacker to execute code with elevated privileges.