A privilege escalation vulnerability was reported in Lenovo preloaded devices deployed using Microsoft AutoPilot under a standard user account due to incorrect default privileges.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-54554 A privilege escalation vulnerability was reported in Lenovo preloaded devices deployed using Microsoft AutoPilot under a standard user account due to incorrect default privileges.
Fixes

Solution

Refer to Mitigation strategy section in the advisory:  https://support.lenovo.com/us/en/product_security/LEN-127385


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-08-02T07:37:59.548Z

Reserved: 2023-09-01T12:24:23.166Z

Link: CVE-2023-4706

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-11-08T22:15:11.420

Modified: 2024-11-21T08:35:47.837

Link: CVE-2023-4706

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.