PT-2023-31651 · Lenovo · Lenovo Lecloud App

张毅进

·

Published

2023-11-08

·

Updated

2023-11-22

·

CVE-2023-5079

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Lenovo LeCloud App (affected versions not specified)
Description The issue is related to improper input validation in the Lenovo LeCloud App, allowing attackers to access arbitrary components and perform arbitrary file downloads. This could result in information disclosure.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2023-5079

Affected Products

Lenovo Lecloud App