Description
A privilege escalation vulnerability was reported in Lenovo Vantage that could allow a local attacker with physical access to impersonate Lenovo Vantage Service and execute arbitrary code with elevated privileges.
No analysis available yet.
Remediation
Vendor Solution
This issue was addressed in version 4.0.49.0. Lenovo Vantage Service is updated automatically.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58301 | A privilege escalation vulnerability was reported in Lenovo Vantage that could allow a local attacker with physical access to impersonate Lenovo Vantage Service and execute arbitrary code with elevated privileges. |
References
| Link | Providers |
|---|---|
| https://support.lenovo.com/us/en/product_security/LEN-144736 |
|
History
Fri, 30 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2025-05-30T14:25:28.842Z
Reserved: 2023-11-08T21:12:23.667Z
Link: CVE-2023-6044
Updated: 2024-08-02T08:21:17.092Z
Status : Modified
Published: 2024-01-19T20:15:12.647
Modified: 2024-11-21T08:43:02.067
Link: CVE-2023-6044
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD