4.6
CVSSv2

CVE-2020-8335

Published: 01/09/2020 Updated: 10/09/2020
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.8 | Impact Score: 5.9 | Exploitability Score: 0.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad A285, BIOS versions up to r0xuj70w; A485, BIOS versions up to r0wuj65w; T495 BIOS versions up to r12uj55w; T495s/X395, BIOS versions up to r13uj47w, while the emergency-reset button is pressed which may allow for unauthorized access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

lenovo thinkpad_a275_firmware

lenovo thinkpad_a285_firmware

lenovo thinkpad_a475_firmware

lenovo thinkpad_a485_firmware

lenovo thinkpad_t495_drift_firmware

lenovo thinkpad_t495s_jazz_firmware

lenovo thinkpad_x1_carbon_\\(20bx\\)_firmware

lenovo thinkpad_x395_firmware