CVE-2022-4569
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
05/06/2023
Last modified:
13/06/2023
Description
A local privilege escalation vulnerability in the ThinkPad Hybrid USB-C with USB-A Dock Firmware Update Tool could allow an attacker with local access to execute code with elevated privileges during the package upgrade or installation.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:lenovo:thinkpad_hybrid_usb-c_with_usb-a_dock_firmware:*:*:*:*:*:windows:*:* | 1.0.35_v2 (excluding) | |
| cpe:2.3:h:lenovo:thinkpad_hybrid_usb-c_with_usb-a_dock:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



