HomeLenovoCVE-2023-5078

CVE-2023-5078

MEDIUM
6.7CVSS
Published: 2023-11-08
Updated: 2024-11-21
AI Analysis

Description

A vulnerability was reported in some ThinkPad BIOS that could allow a physical or local attacker with elevated privileges to tamper with BIOS firmware.

CVSS Metrics

Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Attack Vector
local
Complexity
low
Privileges
high
User Action
none
Scope
unchanged
Confidentiality
high
Integrity
high
Availability
high

Metadata

Primary Vendor
LENOVO
Published
11/8/2023
Last Modified
11/21/2024
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

lenovo : thinkpad_x13_gen_3_firmwarelenovo : thinkpad_s2_yoga_gen_7_firmwarelenovo : thinkpad_s2_yoga_gen_6_firmwarelenovo : thinkpad_s2_gen_8_firmwarelenovo : thinkpad_p14s_gen_3_firmwarelenovo : thinkpad_p16s_gen_1_firmwarelenovo : thinkpad_t14_gen_3_firmwarelenovo : thinkpad_t14s_gen_3_firmwarelenovo : thinkpad_t16_gen_1_firmwarelenovo : thinkpad_l14_gen_3_firmwarelenovo : thinkpad_l14_gen_4_firmwarelenovo : thinkpad_l15_gen_3_firmwarelenovo : thinkpad_l15_gen_4_firmwarelenovo : thinkpad_l13_yoga_gen_4_firmwarelenovo : thinkpad_l13_yoga_gen_3_firmwarelenovo : thinkpad_l13_yoga_gen_2_firmwarelenovo : thinkpad_l13_gen_4_firmwarelenovo : thinkpad_l13_gen_3_firmwarelenovo : thinkpad_l13_gen_2_firmwarelenovo : thinkpad_s2_yoga_gen_8_firmware

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2023-5078 | MEDIUM Severity | CVEDatabase.com | CVEDatabase.com