A privilege escalation vulnerability was reported in Lenovo Service Bridge prior to version 5.0.2.17 that could allow operating system commands to be executed if a specially crafted link is visited.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-44294 A privilege escalation vulnerability was reported in Lenovo Service Bridge prior to version 5.0.2.17 that could allow operating system commands to be executed if a specially crafted link is visited.
Fixes

Solution

Upgrade to the Lenovo Service Bridge version 5.0.2.17 or later. If you previously installed Lenovo Service Bridge, the update will be performed automatically.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-08-01T20:47:41.519Z

Reserved: 2024-05-09T16:18:19.615Z

Link: CVE-2024-4696

cve-icon Vulnrichment

Updated: 2024-08-01T20:47:41.519Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-06-13T20:15:15.697

Modified: 2024-11-21T09:43:23.807

Link: CVE-2024-4696

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T22:45:01Z