CVE-2021-3614

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
16/07/2021
Last modified:
30/07/2021

Description

A vulnerability was reported on some Lenovo Notebook systems that could allow an attacker with physical access to elevate privileges under certain conditions during a BIOS update performed by Lenovo Vantage.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:lenovo:ideapad_1-11ada05_firmware:fqcn19ww:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:ideapad_1-11ada05:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_1-14ada05_firmware:fqcn19ww:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:ideapad_1-14ada05:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v130-15ikb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:v130-15ikb:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:100e_2nd_gen_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:100e_2nd_gen:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:300e_2nd_gen_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:300e_2nd_gen:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_730-13iml_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:ideapad_730-13iml:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_flex_5-14alc05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:ideapad_flex_5-14alc05:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_flex_5-15alc05_firmware:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools