Lenovo system update
This hub aggregates every CVE we track for Lenovo system update, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
6
CVEs tracked
0
Critical
6
High
0
In CISA KEV
Severity distribution
HIGH6
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 6 most recently published vulnerabilities affecting Lenovo system update.
- CVE-2023-4632An uncontrolled search path vulnerability was reported in Lenovo System Update that could allow an attacker with local access to execute code with elevated privileges.7.8
- CVE-2022-4568A directory permissions management vulnerability in Lenovo System Update may allow elevation of privileges.7.0
- CVE-2022-0354A vulnerability was reported in Lenovo System Update that could allow a local user with interactive system access the ability to execute code with elevated privileges only during the installation o...7.3
- CVE-2018-9063MapDrv (C:\Program Files\Lenovo\System Update\mapdrv.exe) In Lenovo System Update versions earlier than 5.07.0072 contains a local vulnerability where an attacker entering very large user ID or pas...7.8
- CVE-2015-8109Lenovo System Update (formerly ThinkVantage System Update) before 5.07.0019 allows local users to gain privileges by making a prediction of tvsu_tmp_xxxxxXXXXX account credentials that requires kno...7.0
- CVE-2015-8110Lenovo System Update (formerly ThinkVantage System Update) before 5.07.0019 allows local users to gain privileges by navigating to (1) "Click here to learn more" or (2) "View privacy policy" within...7.8
Product normalization is registry-driven with AI assist and human review. How it works