CVE-2023-5080

EUVD-2023-57420
A privilege escalation vulnerability was reported in some Lenovo tablet products that could allow local applications access to device identifiers and system commands.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 MEDIUM
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H
lenovoCNA
6.8 MEDIUM
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 11%
Affected Products (NVD)
VendorProductVersion
lenovotab_m8_hd_tb8505f_firmware
𝑥
< 8505f_usr_s301106_2309140042_v9.56_bmp_row
lenovotab_m8_hd_tb8505fs_firmware
𝑥
< 8505fs_usr_s301107_2309140028_v9.56_bmp_row
lenovotab_m8_hd_tb8505x_firmware
𝑥
< 8505x_usr_s301129_2309141226_v9.56_bmp_row
lenovotab_m8_hd_tb8505xs_firmware
𝑥
< 8505xs_usr_s301077_2309140036_v9.56_bmp_row
𝑥
= Vulnerable software versions