CVE-2017-3756

A privilege escalation vulnerability was identified in Lenovo Active Protection System for ThinkPad systems versions earlier than 1.82.0.17. An attacker with local privileges could execute code with administrative privileges via an unquoted service path.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
lenovoCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 19%
VendorProductVersion
lenovothinkpad_10_ella_2_bios
-
lenovothinkpad_11e_beema_bios
-
lenovothinkpad_11e_braswell_bios
-
lenovothinkpad_11e_broadwell_bios
-
lenovothinkpad_11e_skylake_bios
-
lenovothinkpad_13e_bios
-
lenovothinkpad_e450_bios
-
lenovothinkpad_e450c_bios
-
lenovothinkpad_e455_bios
-
lenovothinkpad_e460_bios
-
lenovothinkpad_e465_bios
-
lenovothinkpad_e550_bios
-
lenovothinkpad_e550c_bios
-
lenovothinkpad_e555_bios
-
lenovothinkpad_e560_bios
-
lenovothinkpad_e565_bios
-
lenovothinkpad_edge_e440_bios
-
lenovothinkpad_edge_e445_bios
-
lenovothinkpad_edge_e540_bios
-
lenovothinkpad_edge_e545_bios
-
lenovothinkpad_helix_20cg_bios
-
lenovothinkpad_helix_20ch_bios
-
lenovothinkpad_l440_bios
-
lenovothinkpad_l450_bios
-
lenovothinkpad_l460_bios
-
lenovothinkpad_l540_bios
-
lenovothinkpad_l560_bios
-
lenovothinkpad_p50_bios
-
lenovothinkpad_p50s_bios
-
lenovothinkpad_p70_bios
-
lenovothinkpad_s1_yoga_12_bios
-
lenovothinkpad_s1_yoga_non_vpro_bios
-
lenovothinkpad_s1_yoga_vpro_bios
-
lenovothinkpad_s3_s440_bios
-
lenovothinkpad_s3_yoga_14_bios
-
lenovothinkpad_s5_e560p_bios
-
lenovothinkpad_s5_yoga_15_bios
-
lenovothinkpad_s540_bios
-
lenovothinkpad_t440_bios
-
lenovothinkpad_t440p_bios
-
lenovothinkpad_t440s_bios
-
lenovothinkpad_t440u_bios
-
lenovothinkpad_t450_bios
-
lenovothinkpad_t450s_bios
-
lenovothinkpad_t460_bios
-
lenovothinkpad_t460p_bios
-
lenovothinkpad_t460s_bios
-
lenovothinkpad_t540_bios
-
lenovothinkpad_t540p_bios
-
lenovothinkpad_t550_bios
-
lenovothinkpad_t560_bios
-
lenovothinkpad_tablet_10_bios
-
lenovothinkpad_tablet_8_bios
-
lenovothinkpad_w540_bios
-
lenovothinkpad_w541_bios
-
lenovothinkpad_w550s_bios
-
lenovothinkpad_x1_carbon_20ax_bios
-
lenovothinkpad_x1_carbon_20bx_bios
-
lenovothinkpad_x1_carbon_bios
-
lenovothinkpad_x1_tablet_bios
-
lenovothinkpad_x1_yoga_bios
-
lenovothinkpad_x140e_amd_bios
-
lenovothinkpad_x240_bios
-
lenovothinkpad_x240s_bios
-
lenovothinkpad_x250_broadwell_bios
-
lenovothinkpad_x250_sharkbay_bios
-
lenovothinkpad_x260_bios
-
lenovothinkpad_yoga_11e_beema_bios
-
lenovothinkpad_yoga_11e_bios
-
lenovothinkpad_yoga_11e_braswell_bios
-
lenovothinkpad_yoga_11e_broadwell_bios
-
lenovothinkpad_yoga_11e_skylake_bios
-
lenovothinkpad_yoga_14_460_s3_bios
-
lenovothinkpad_yoga_260_s1_bios
-
lenovothinkpad_10_ella_2
-
lenovothinkpad_11e_beema
-
lenovothinkpad_11e_braswell
-
lenovothinkpad_11e_broadwell
-
lenovothinkpad_11e_skylake
-
lenovothinkpad_13e
-
lenovothinkpad_e450
-
lenovothinkpad_e450c
-
lenovothinkpad_e455
-
lenovothinkpad_e460
-
lenovothinkpad_e465
-
lenovothinkpad_e550
-
lenovothinkpad_e550c
-
lenovothinkpad_e555
-
lenovothinkpad_e560
-
lenovothinkpad_e565
-
lenovothinkpad_edge_e440
-
lenovothinkpad_edge_e445
-
lenovothinkpad_edge_e540
-
lenovothinkpad_edge_e545
-
lenovothinkpad_helix_20cg
-
lenovothinkpad_helix_20ch
-
lenovothinkpad_l440
-
lenovothinkpad_l450
-
lenovothinkpad_l460
-
lenovothinkpad_l540
-
lenovothinkpad_l560
-
lenovothinkpad_p50
-
lenovothinkpad_p50s
-
lenovothinkpad_p70
-
lenovothinkpad_s1_yoga_12
-
lenovothinkpad_s1_yoga_non_vpro
-
lenovothinkpad_s1_yoga_vpro
-
lenovothinkpad_s3_s440
-
lenovothinkpad_s3_yoga_14
-
lenovothinkpad_s5_e560p
-
lenovothinkpad_s5_yoga_15
-
lenovothinkpad_s540
-
lenovothinkpad_t440
-
lenovothinkpad_t440p
-
lenovothinkpad_t440s
-
lenovothinkpad_t440u
-
lenovothinkpad_t450
-
lenovothinkpad_t450s
-
lenovothinkpad_t460
-
lenovothinkpad_t460p
-
lenovothinkpad_t460s
-
lenovothinkpad_t540
-
lenovothinkpad_t540p
-
lenovothinkpad_t550
-
lenovothinkpad_t560
-
lenovothinkpad_tablet_10
-
lenovothinkpad_tablet_8
-
lenovothinkpad_w540
-
lenovothinkpad_w541
-
lenovothinkpad_w550s
-
lenovothinkpad_x1_carbon
-
lenovothinkpad_x1_carbon_20ax
-
lenovothinkpad_x1_carbon_20bx
-
lenovothinkpad_x1_tablet
-
lenovothinkpad_x1_yoga
-
lenovothinkpad_x140e_amd
-
lenovothinkpad_x240
-
lenovothinkpad_x240s
-
lenovothinkpad_x250_broadwell
-
lenovothinkpad_x250_sharkbay
-
lenovothinkpad_x260
-
lenovothinkpad_yoga_11e
-
lenovothinkpad_yoga_11e_beema
-
lenovothinkpad_yoga_11e_braswell
-
lenovothinkpad_yoga_11e_broadwell
-
lenovothinkpad_yoga_11e_skylake
-
lenovothinkpad_yoga_14_460_s3
-
lenovothinkpad_yoga_260_s1
-
𝑥
= Vulnerable software versions