Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47999 | An improper certificate validation vulnerability was reported in LADM that could allow a network attacker with the ability to redirect an update request to a remote server and execute code with elevated privileges. |
Solution
Update Lenovo Accessories and Display Manager to version 1.0.5.05 or later.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://support.lenovo.co/us/en/product_security/LEN-174319 |
|
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 16 Dec 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 16 Dec 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper certificate validation vulnerability was reported in LADM that could allow a network attacker with the ability to redirect an update request to a remote server and execute code with elevated privileges. | |
| Weaknesses | CWE-295 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2024-12-16T17:18:06.452Z
Reserved: 2024-06-14T15:26:37.230Z
Link: CVE-2024-6001
Updated: 2024-12-16T17:18:02.551Z
Status : Received
Published: 2024-12-16T17:15:14.197
Modified: 2024-12-16T17:15:14.197
Link: CVE-2024-6001
No data.
OpenCVE Enrichment
Updated: 2025-07-12T15:42:37Z
EUVD