CVE-2023-1577

A path hijacking vulnerability was reported in Lenovo Driver Manager prior to version 3.1.1307.1308 that could allow a local user to execute code with elevated privileges.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:lenovo:drivers_management:*:*:*:*:*:*:*:*

History

13 Aug 2024, 15:12

Type Values Removed Values Added
First Time Lenovo drivers Management
Lenovo
CWE NVD-CWE-noinfo
References () https://iknow.lenovo.com.cn/detail/dc_415202.html - () https://iknow.lenovo.com.cn/detail/dc_415202.html - Vendor Advisory
CPE cpe:2.3:a:lenovo:drivers_management:*:*:*:*:*:*:*:*

01 Aug 2024, 12:42

Type Values Removed Values Added
Summary
  • (es) Se informó una vulnerabilidad de secuestro de ruta en Lenovo Driver Manager antes de la versión 3.1.1307.1308 que podría permitir a un usuario local ejecutar código con privilegios elevados.

31 Jul 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-31 21:15

Updated : 2024-08-13 15:12


NVD link : CVE-2023-1577

Mitre link : CVE-2023-1577

CVE.ORG link : CVE-2023-1577


JSON object : View

Products Affected

lenovo

  • drivers_management
CWE
NVD-CWE-noinfo CWE-20

Improper Input Validation