CVE-2022-4569

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
05/06/2023
Last modified:
13/06/2023

Description

A local privilege escalation vulnerability in the ThinkPad Hybrid USB-C with USB-A Dock Firmware Update Tool could allow an attacker with local access to execute code with elevated privileges during the package upgrade or installation.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:lenovo:thinkpad_hybrid_usb-c_with_usb-a_dock_firmware:*:*:*:*:*:windows:*:* 1.0.35_v2 (excluding)
cpe:2.3:h:lenovo:thinkpad_hybrid_usb-c_with_usb-a_dock:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools