Lenovo THINKCENTRE M90A PRO GEN 3 FIRMWARE -

CPE Details

Lenovo THINKCENTRE M90A PRO GEN 3 FIRMWARE -
-
2023-06-13
10h20 +00:00
2023-08-19
02h12 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:lenovo:thinkcentre_m90a_pro_gen_3_firmware:-:*:*:*:*:*:*:*

Informations

Vendor

lenovo

Product

thinkcentre_m90a_pro_gen_3_firmware

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-43577 2023-11-08 22h38 +00:00 A buffer overflow was reported in the ReFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2023-43576 2023-11-08 22h37 +00:00 A buffer overflow was reported in the WMISwSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2023-43575 2023-11-08 22h37 +00:00 A buffer overflow was reported in the UltraFunctionTable module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2023-43574 2023-11-08 22h35 +00:00 A buffer over-read was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
4.4
Medium
CVE-2023-43573 2023-11-08 22h34 +00:00 A buffer overflow was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2023-43572 2023-11-08 22h33 +00:00 A buffer over-read was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
4.4
Medium
CVE-2023-43581 2023-11-08 22h25 +00:00 A buffer overflow was reported in the Update_WMI module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2023-43580 2023-11-08 22h24 +00:00 A buffer overflow was reported in the SmuV11DxeVMR module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2023-43579 2023-11-08 22h23 +00:00 A buffer overflow was reported in the SmuV11Dxe driver in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2023-43578 2023-11-08 22h21 +00:00 A buffer overflow was reported in the SmiFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2023-43571 2023-11-08 22h18 +00:00 A buffer overflow was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2023-43570 2023-11-08 22h07 +00:00 A potential vulnerability was reported in the SMI callback function of the OemSmi driver that may allow a local attacker with elevated permissions to execute arbitrary code.
6.7
Medium
CVE-2023-43569 2023-11-08 22h06 +00:00 A buffer overflow was reported in the OemSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. 
6.7
Medium
CVE-2023-43568 2023-11-08 22h05 +00:00 A buffer over-read was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
4.4
Medium
CVE-2023-43567 2023-11-08 22h04 +00:00 A buffer overflow was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2022-48181 2023-06-05 21h01 +00:00 An ErrorMessage driver stack-based buffer overflow vulnerability in BIOS of some ThinkPad models could allow an attacker with local access to elevate their privileges and execute arbitrary code.
7.8
High