PT-2020-20105 · Lenovo · Lenovo Diagnostics

Published

2020-10-14

·

Updated

2020-10-16

·

CVE-2020-8338

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Lenovo Diagnostics versions prior to 4.35.4
Description A DLL search path issue was reported that could allow a user with local access to execute code on the system.
Recommendations For versions prior to 4.35.4, update to version 4.35.4 or later to resolve the issue.

Fix

Untrusted Search Path

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-8338

Affected Products

Lenovo Diagnostics