Lenovo Fingerprint Manager before 8.01.57 and Touch Fingerprint before 1.00.08 use weak ACLs for unspecified (1) services and (2) files, which allows local users to gain privileges by invalidating local checks.
2016-04-11T14:59:11.333
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | lenovo | fingerprint_manager | ≤ 8.01.56 | Yes |
Application | lenovo | touch_fingerprint | ≤ 1.00.07 | Yes |