Lenovo ThinkAgile VX 2U

CPE Details

Lenovo ThinkAgile VX 2U
-
2021-04-20
11h49 +00:00
2021-04-27
11h46 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:h:lenovo:thinkagile_vx_2u:-:*:*:*:*:*:*:*

Informations

Vendor

lenovo

Product

thinkagile_vx_2u

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-40137 2023-01-30 21h26 +00:00 A buffer overflow in the WMI SMI Handler in some Lenovo models may allow an attacker with local access and elevated privileges to execute arbitrary code.
6.7
Medium
CVE-2022-40134 2023-01-30 21h20 +00:00 An information leak vulnerability in the SMI Set BIOS Password SMI Handler in some Lenovo models may allow an attacker with local access and elevated privileges to read SMM memory.
4.4
Medium
CVE-2021-3473 2021-04-13 18h41 +00:00 An internal product security audit of Lenovo XClarity Controller (XCC) discovered that the XCC configuration backup/restore password may be written to an internal XCC log buffer if Lenovo XClarity Administrator (LXCA) is used to perform the backup/restore. The backup/restore password typically exists in this internal log buffer for less than 10 minutes before being overwritten. Generating an FFDC service log will include the log buffer contents, including the backup/restore password if present. The FFDC service log is only generated when requested by a privileged XCC user and it is only accessible to the privileged XCC user that requested the file. The backup/restore password is not captured if the backup/restore is initiated directly from XCC.
4.9
Medium