CVE-2023-25493
Severity CVSS v4.0:
Pending analysis
Type:
CWE-306
Missing Authentication for Critical Function
Publication date:
05/04/2024
Last modified:
16/09/2024
Description
A potential vulnerability was reported in the BIOS update tool driver for some Desktop, Smart Edge, Smart Office, and ThinkStation products that could allow a local user with elevated privileges to execute arbitrary code.
Impact
Base Score 3.x
6.70
Severity 3.x
MEDIUM



