PT-2019-18002 · Lenovo · Thinkpad

Published

2019-08-19

·

Updated

2022-10-19

·

CVE-2019-6171

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions ThinkPad systems (affected versions not specified)
Description A reported issue in certain ThinkPad systems' BIOS could allow a user with administrative privileges or physical access to update the Embedded Controller with unsigned firmware.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2019-6171

Affected Products

Thinkpad