6.7
CVSSv3

CVE-2020-8322

Published: 09/06/2020 Updated: 17/06/2020
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

A potential vulnerability in the SMI callback function used in the Legacy USB driver in some Lenovo Notebook and ThinkStation models may allow arbitrary code execution.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

lenovo 330-14ast_firmware -

lenovo 330-15ast_firmware -

lenovo 330-17ast_firmware -

lenovo 340c-15api_firmware -

lenovo 340c-15ast_firmware -

lenovo 720s_touch-15ikb_firmware -

lenovo 720s-15ikb_firmware -

lenovo 730s-13iwl_firmware -

lenovo c640-iml_firmware -

lenovo e42-80_firmware -

lenovo e52-80_firmware -

lenovo k22-80_firmware -

lenovo v720-12_firmware -

lenovo k32-80_kbl_firmware -

lenovo k32-80_skl_firmware -

lenovo miix_720-12ikb_firmware -

lenovo s145-14api_firmware -

lenovo s145-14ast_firmware -

lenovo s145-15api_firmware -

lenovo s145-15ast_firmware -

lenovo s540-13api_firmware -

lenovo s750-iil_firmware -

lenovo s940-14iwl_firmware -

lenovo thinkbook_13s-iwl_firmware -

lenovo thinkbook_14s-iwl_firmware -

lenovo v110-14ast_firmware -

lenovo v110-14ikb_firmware -

lenovo v110-15ast_firmware -

lenovo v130-15igm_firmware -

lenovo v130-15ikb_firmware -

lenovo v310-15igm_firmware -

lenovo v330-15igm_firmware -

lenovo v330-15ikb_firmware -

lenovo v330-15isk_firmware -

lenovo v340-iil_firmware -

lenovo v340-iml_firmware -

lenovo v540s-13_firmware -

lenovo 14iwl_firmware -

lenovo v730-13ikb_firmware -

lenovo v730-13isk_firmware -

lenovo v730-15ikb_firmware -

lenovo wei5-15ikb_firmware -

lenovo xiaoxin_14-ast_qc_2019_firmware -

lenovo xx-14api_qc_2019_firmware -

lenovo yoga_s730-13iwl_firmware -

lenovo yoga_s940-14iwl_firmware -

lenovo 6_pro-13-iwl_firmware -

lenovo 6_pro-14-iwl_firmware -

lenovo e53-80_firmware -

lenovo k3_firmware -

lenovo k4-iwl_firmware -