Description
A potential missing authentication vulnerability was reported in some Lenovo Tablets that could allow an unauthorized user with physical access to modify Control Center settings if the device is locked when the "Allow Control Center access when locked" option is disabled.
Published: 2026-01-14
Score: 2.4 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update to the version (or higher) as recommended in the advisory:  https://support.lenovo.com/us/en/product_security/LEN-207951

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 15 Jan 2026 16:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:lenovo:tab_p12_tb370fu:tdb:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_p12_tb372fu:tdb:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_p12_tb370fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_p12_tb372fu:*:*:*:*:*:*:*:*

Thu, 15 Jan 2026 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 14 Jan 2026 22:45:00 +0000

Type Values Removed Values Added
Description A potential missing authentication vulnerability was reported in some Lenovo Tablets that could allow an unauthorized user with physical access to modify Control Center settings if the device is locked when the "Allow Control Center access when locked" option is disabled.
First Time appeared Lenovo
Lenovo idea Tab Pro Tb373fu
Lenovo idea Tab Tb336fu
Lenovo legion Tab Tb320fc
Lenovo legion Tab Tb321fu
Lenovo lenovo Tab With Clear Case Tb311fu
Lenovo lenovo Tab With Folio Case Tb311xu
Lenovo tab7
Lenovo tab Extreme Tb570zu Tb570fu
Lenovo tab K11 Gen 2 Tb336zu
Lenovo tab K11 Plus Lte Tb352fu
Lenovo tab K11 Plus Lte Tb352xu
Lenovo tab K11 Tb330fu
Lenovo tab K11 Tb330fup
Lenovo tab K11 Tb330xu
Lenovo tab K11 Tb330xup
Lenovo tab K9 Tb305fu
Lenovo tab K9 Tb305xu
Lenovo tab M10 5g Tb360zu
Lenovo tab M11 Tb330fu Tb330xu
Lenovo tab M8 4th Gen 2024 Tb301fu
Lenovo tab M8 4th Gen 2024 Tb301xu
Lenovo tab M8 4th Gen Tb300fu
Lenovo tab M8 4th Gen Tb300xu
Lenovo tab M9 Tb310fu
Lenovo tab M9 Tb310xu
Lenovo tab P11 2nd Gen Tb350fu
Lenovo tab P11 2nd Gen Tb350xu
Lenovo tab P12 Tb370fu
Lenovo tab P12 Tb372fu
Lenovo tab Plus Tb351fu
Lenovo yoga Tab Plus Tb520fu
Weaknesses CWE-306
CPEs cpe:2.3:a:lenovo:idea_tab_pro_tb373fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:idea_tab_tb336fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:legion_tab_tb320fc:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:legion_tab_tb321fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:lenovo_tab_with_clear_case_tb311fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:lenovo_tab_with_folio_case_tb311xu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab7:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_extreme_tb570zu_tb570fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_k11_gen_2_tb336zu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_k11_plus_lte_tb352fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_k11_plus_lte_tb352xu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_k11_tb330fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_k11_tb330fup:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_k11_tb330xu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_k11_tb330xup:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_k9_tb305fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_k9_tb305xu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_m10_5g_tb360zu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_m11_tb330fu_tb330xu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_m8_4th_gen_2024_tb301fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_m8_4th_gen_2024_tb301xu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_m8_4th_gen_tb300fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_m8_4th_gen_tb300xu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_m9_tb310fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_m9_tb310xu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_p11_2nd_gen_tb350fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_p11_2nd_gen_tb350xu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_p12_tb370fu:tdb:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_p12_tb372fu:tdb:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:tab_plus_tb351fu:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:yoga_tab_plus_tb520fu:*:*:*:*:*:*:*:*
Vendors & Products Lenovo
Lenovo idea Tab Pro Tb373fu
Lenovo idea Tab Tb336fu
Lenovo legion Tab Tb320fc
Lenovo legion Tab Tb321fu
Lenovo lenovo Tab With Clear Case Tb311fu
Lenovo lenovo Tab With Folio Case Tb311xu
Lenovo tab7
Lenovo tab Extreme Tb570zu Tb570fu
Lenovo tab K11 Gen 2 Tb336zu
Lenovo tab K11 Plus Lte Tb352fu
Lenovo tab K11 Plus Lte Tb352xu
Lenovo tab K11 Tb330fu
Lenovo tab K11 Tb330fup
Lenovo tab K11 Tb330xu
Lenovo tab K11 Tb330xup
Lenovo tab K9 Tb305fu
Lenovo tab K9 Tb305xu
Lenovo tab M10 5g Tb360zu
Lenovo tab M11 Tb330fu Tb330xu
Lenovo tab M8 4th Gen 2024 Tb301fu
Lenovo tab M8 4th Gen 2024 Tb301xu
Lenovo tab M8 4th Gen Tb300fu
Lenovo tab M8 4th Gen Tb300xu
Lenovo tab M9 Tb310fu
Lenovo tab M9 Tb310xu
Lenovo tab P11 2nd Gen Tb350fu
Lenovo tab P11 2nd Gen Tb350xu
Lenovo tab P12 Tb370fu
Lenovo tab P12 Tb372fu
Lenovo tab Plus Tb351fu
Lenovo yoga Tab Plus Tb520fu
References
Metrics cvssV3_1

{'score': 3.2, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L'}

cvssV4_0

{'score': 2.4, 'vector': 'CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N'}


Subscriptions

Lenovo Idea Tab Pro Tb373fu Idea Tab Tb336fu Legion Tab Tb320fc Legion Tab Tb321fu Lenovo Tab With Clear Case Tb311fu Lenovo Tab With Folio Case Tb311xu Tab7 Tab Extreme Tb570zu Tb570fu Tab K11 Gen 2 Tb336zu Tab K11 Plus Lte Tb352fu Tab K11 Plus Lte Tb352xu Tab K11 Tb330fu Tab K11 Tb330fup Tab K11 Tb330xu Tab K11 Tb330xup Tab K9 Tb305fu Tab K9 Tb305xu Tab M10 5g Tb360zu Tab M11 Tb330fu Tb330xu Tab M8 4th Gen 2024 Tb301fu Tab M8 4th Gen 2024 Tb301xu Tab M8 4th Gen Tb300fu Tab M8 4th Gen Tb300xu Tab M9 Tb310fu Tab M9 Tb310xu Tab P11 2nd Gen Tb350fu Tab P11 2nd Gen Tb350xu Tab P12 Tb370fu Tab P12 Tb372fu Tab Plus Tb351fu Yoga Tab Plus Tb520fu
cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2026-01-15T15:56:05.902Z

Reserved: 2025-12-04T19:05:38.655Z

Link: CVE-2025-14058

cve-icon Vulnrichment

Updated: 2026-01-15T14:48:42.571Z

cve-icon NVD

Status : Deferred

Published: 2026-01-14T23:15:55.970

Modified: 2026-04-15T00:35:42.020

Link: CVE-2025-14058

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses