Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-3616


A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow an unauthorized user to view device information, alter firmware content and device configuration. This vulnerability is the same as CNVD-2020-68651.


Published

2021-08-17T17:15:07.533

Last Modified

2024-11-21T06:21:59.423

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.4 (CRITICAL)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

6.4

Weaknesses
  • Type: Secondary
    CWE-285
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System lenovo smart_camera_c2e_firmware < 01.03.29.16 Yes
Hardware lenovo smart_camera_c2e - No
Operating System lenovo smart_camera_x3_firmware < 01.03.29.16 Yes
Hardware lenovo smart_camera_x3 - No
Operating System lenovo smart_camera_x5_firmware < 01.03.29.16 Yes
Hardware lenovo smart_camera_x5 - No

References