CVE-2023-5080

A privilege escalation vulnerability was reported in some Lenovo tablet products that could allow local applications access to device identifiers and system commands.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 MEDIUM
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H
lenovoCNA
6.8 MEDIUM
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 6%
VendorProductVersion
lenovotab_m8_hd_tb8505f_firmware
𝑥
< 8505f_usr_s301106_2309140042_v9.56_bmp_row
lenovotab_m8_hd_tb8505fs_firmware
𝑥
< 8505fs_usr_s301107_2309140028_v9.56_bmp_row
lenovotab_m8_hd_tb8505x_firmware
𝑥
< 8505x_usr_s301129_2309141226_v9.56_bmp_row
lenovotab_m8_hd_tb8505xs_firmware
𝑥
< 8505xs_usr_s301077_2309140036_v9.56_bmp_row
𝑥
= Vulnerable software versions