7.8
CVSSv3

CVE-2022-48188

Published: 05/06/2023 Updated: 13/06/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A buffer overflow vulnerability in the SecureBootDXE BIOS driver of some Lenovo Desktop and ThinkStation models could allow an attacker with local access to elevate their privileges to execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

lenovo ideacentre_aio_3_21itl7_firmware

lenovo ideacentre_aio_3-22itl6_firmware

lenovo ideacentre_aio_3-24itl6_firmware

lenovo ideacentre_aio_3-27itl6_firmware

lenovo thinkcentre_m720e_firmware

lenovo thinkcentre_m720q_firmware

lenovo thinkcentre_m720s_firmware

lenovo thinkcentre_m720t_firmware

lenovo thinkcentre_m725s_firmware

lenovo thinkcentre_m75s_gen_2_firmware

lenovo thinkcentre_m75t_gen_2_firmware

lenovo thinkcentre_m920q_firmware

lenovo thinkcentre_m920s_firmware

lenovo thinkcentre_m920t_firmware

lenovo thinkcentre_m920x_firmware

lenovo thinkcentre_m920z_firmware

lenovo ideacentre_510s-07icb_firmware

lenovo ideacentre_510s-07ick_firmware

lenovo ideacentre_720-18apr_firmware

lenovo v30a-22itl_firmware

lenovo v30a-24itl_firmware

lenovo v530s-07icb_firmware

lenovo v530s-07icr_firmware

lenovo thinkstation_p330_tiny_firmware

lenovo thinkstation_p360_ultra_firmware

lenovo thinkstation_p520_firmware

lenovo thinkstation_p520c_firmware