Lucene search

K
nvd[email protected]NVD:CVE-2020-8334
HistoryJun 09, 2020 - 8:15 p.m.

CVE-2020-8334

2020-06-0920:15:22
CWE-754
web.nvd.nist.gov
2

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

CVSS3

6.8

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

30.6%

The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized access.

Affected configurations

Nvd
Node
lenovothinkpad_t495sMatch-
AND
lenovothinkpad_t495s_firmwareMatch-
Node
lenovothinkpad_x395Match-
AND
lenovothinkpad_x395_firmwareMatch-
Node
lenovothinkpad_t495Match-
AND
lenovothinkpad_t495_firmwareMatch-
Node
lenovothinkpad_a485Match-
AND
lenovothinkpad_a485_firmwareMatch-
Node
lenovothinkpad_a285Match-
AND
lenovothinkpad_a285_firmwareMatch-
Node
lenovothinkpad_a475Match-
AND
lenovothinkpad_a475_firmwareMatch-
Node
lenovothinkpad_a275Match-
AND
lenovothinkpad_a275_firmwareMatch-
VendorProductVersionCPE
lenovothinkpad_t495s-cpe:2.3:h:lenovo:thinkpad_t495s:-:*:*:*:*:*:*:*
lenovothinkpad_t495s_firmware-cpe:2.3:o:lenovo:thinkpad_t495s_firmware:-:*:*:*:*:*:*:*
lenovothinkpad_x395-cpe:2.3:h:lenovo:thinkpad_x395:-:*:*:*:*:*:*:*
lenovothinkpad_x395_firmware-cpe:2.3:o:lenovo:thinkpad_x395_firmware:-:*:*:*:*:*:*:*
lenovothinkpad_t495-cpe:2.3:h:lenovo:thinkpad_t495:-:*:*:*:*:*:*:*
lenovothinkpad_t495_firmware-cpe:2.3:o:lenovo:thinkpad_t495_firmware:-:*:*:*:*:*:*:*
lenovothinkpad_a485-cpe:2.3:h:lenovo:thinkpad_a485:-:*:*:*:*:*:*:*
lenovothinkpad_a485_firmware-cpe:2.3:o:lenovo:thinkpad_a485_firmware:-:*:*:*:*:*:*:*
lenovothinkpad_a285-cpe:2.3:h:lenovo:thinkpad_a285:-:*:*:*:*:*:*:*
lenovothinkpad_a285_firmware-cpe:2.3:o:lenovo:thinkpad_a285_firmware:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 141

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

CVSS3

6.8

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

30.6%

Related for NVD:CVE-2020-8334