Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-4569


A local privilege escalation vulnerability in the ThinkPad Hybrid USB-C with USB-A Dock Firmware Update Tool could allow an attacker with local access to execute code with elevated privileges during the package upgrade or installation.


Published

2023-06-05T21:15:10.413

Last Modified

2024-11-21T07:35:30.753

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-276
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System lenovo thinkpad_hybrid_usb-c_with_usb-a_dock_firmware < 1.0.35_v2 Yes
Hardware lenovo thinkpad_hybrid_usb-c_with_usb-a_dock - No

References