CVE-2021-3462
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/04/2021
Last modified:
27/10/2022
Description
A privilege escalation vulnerability in Lenovo Power Management Driver for Windows 10, prior to version 1.67.17.54, that could allow unauthorized access to the driver's device object.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
4.60
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:lenovo:power_management_driver:*:*:*:*:*:windows_10:*:* | 1.67.17.54 (excluding) | |
| cpe:2.3:h:lenovo:thinkpad_11e_gen_5:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_11e_yoga_gen_6:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_13_gen_2:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_25:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_a275:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_a285:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_a475:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_a485:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_e14:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_e14_gen2:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_e15:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_e15_gen2:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_e470:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkpad_e470c:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



