PT-2020-20094 · Lenovo · Lenovo Vantage+2
Published
2020-04-14
·
Updated
2020-04-15
·
CVE-2020-8327
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Lenovo Vantage versions prior to 10.2003.10.0
Description
A privilege escalation issue was reported in LenovoBatteryGaugePackage for Lenovo System Interface Foundation bundled in Lenovo Vantage. This issue could allow an authenticated user to execute code with elevated privileges.
Recommendations
For versions prior to 10.2003.10.0, update to version 10.2003.10.0 or later to resolve the issue.
Fix
Improper Privilege Management
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Lenovo System Interface Foundation
Lenovo Vantage
Lenovobatterygaugepackage