CVE-2016-5247
Severity CVSS v4.0:
Pending analysis
Type:
CWE-254
Security Features
Publication date:
22/09/2016
Last modified:
12/04/2025
Description
The BIOS for Lenovo ThinkCentre E93, M6500t/s, M6600, M6600q, M6600t/s, M73p, M800, M83, M8500t/s, M8600t/s, M900, M93, and M93P devices; ThinkServer RQ940, RS140, TS140, TS240, TS440, and TS540 devices; and ThinkStation E32, P300, and P310 devices might allow local users or physically proximate attackers to bypass the Secure Boot protection mechanism by leveraging an AMI test key.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
7.20
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:lenovo:bios:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_e93:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m6500t\/s:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m6600:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m6600q:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m6600t\/s:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m73p:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m800:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m83:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m8500t\/s:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m8600t\/s:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m900:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m93:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkcentre_m93p:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:lenovo:thinkserver_rq940:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page