6.8
CVSSv3

CVE-2018-9062

Published: 19/07/2018 Updated: 15/10/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.8 | Impact Score: 5.9 | Exploitability Score: 0.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

In some Lenovo ThinkPad products, one BIOS region is not properly included in the checks, allowing injection of arbitrary code.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

lenovo e42-80_firmware

lenovo e42-80_isk_firmware

lenovo e52-80_firmware

lenovo e52-80_isk_firmware

lenovo miix_720-12ikb_firmware

lenovo v310-14ikb_firmware

lenovo v310-14isk_firmware

lenovo v310-15ikb_firmware

lenovo v310-15isk_firmware

lenovo v510-14ikb_firmware

lenovo v510-15ikb_firmware

lenovo thinkpad_l380_firmware

lenovo thinkpad_e480_firmware

lenovo thinkpad_e580_firmware

lenovo thinkpad_l480_firmware

lenovo thinkpad_l580_firmware

lenovo thinkpad_p51_firmware

lenovo thinkpad_p51s_firmware

lenovo thinkpad_p52_firmware

lenovo thinkpad_p52s_firmware

lenovo thinkpad_p71_firmware

lenovo thinkpad_p72_firmware

lenovo thinkpad_t25_firmware

lenovo thinkpad_t470_firmware

lenovo thinkpad_t470p_firmware

lenovo thinkpad_t470s_firmware

lenovo thinkpad_t480_firmware

lenovo thinkpad_t480s_firmware

lenovo thinkpad_t570_firmware

lenovo thinkpad_t580_firmware

lenovo thinkpad_x380_yoga_firmware

lenovo thinkpad_yoga_11e_firmware

lenovo thinkpad_yoga_370_firmware

lenovo thinkpad_s1_firmware

lenovo thinkpad_x1_carbon_firmware

lenovo thinkpad_x1_tablet_firmware

lenovo thinkpad_x1_yoga_firmware

lenovo thinkpad_x270_firmware

lenovo thinkpad_x280_firmware