// For flags

CVE-2016-5247

 

Severity Score

7.8
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The BIOS for Lenovo ThinkCentre E93, M6500t/s, M6600, M6600q, M6600t/s, M73p, M800, M83, M8500t/s, M8600t/s, M900, M93, and M93P devices; ThinkServer RQ940, RS140, TS140, TS240, TS440, and TS540 devices; and ThinkStation E32, P300, and P310 devices might allow local users or physically proximate attackers to bypass the Secure Boot protection mechanism by leveraging an AMI test key.

El BIOS para Lenovo ThinkCentre E93, M6500t/s, M6600, M6600q, M6600t/s, M73p, M800, M83, M8500t/s, M8600t/s, M900, M93 y dispositivos M93P; ThinkServer RQ940, RS140, TS140, TS240, TS440 y dispositivos TS540; y ThinkStation E32, P300 y dispositivos P310 podría permitir a usuarios locales o atacantes físicamente próximos eludir el mecanismo de protección Secure Boot mediante el aprovechamiento de una llave test AMI.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2016-06-03 CVE Reserved
  • 2016-09-22 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-06 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-254: 7PK - Security Features
CAPEC
References (2)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre E93
Search vendor "Lenovo" for product "Thinkcentre E93"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M6500t\/s
Search vendor "Lenovo" for product "Thinkcentre M6500t\/s"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M6600
Search vendor "Lenovo" for product "Thinkcentre M6600"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M6600q
Search vendor "Lenovo" for product "Thinkcentre M6600q"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M6600t\/s
Search vendor "Lenovo" for product "Thinkcentre M6600t\/s"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M73p
Search vendor "Lenovo" for product "Thinkcentre M73p"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M800
Search vendor "Lenovo" for product "Thinkcentre M800"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M83
Search vendor "Lenovo" for product "Thinkcentre M83"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M8500t\/s
Search vendor "Lenovo" for product "Thinkcentre M8500t\/s"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M8600t\/s
Search vendor "Lenovo" for product "Thinkcentre M8600t\/s"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M900
Search vendor "Lenovo" for product "Thinkcentre M900"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M93
Search vendor "Lenovo" for product "Thinkcentre M93"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M93p
Search vendor "Lenovo" for product "Thinkcentre M93p"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkserver Rq940
Search vendor "Lenovo" for product "Thinkserver Rq940"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkserver Rs140
Search vendor "Lenovo" for product "Thinkserver Rs140"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkserver Ts140
Search vendor "Lenovo" for product "Thinkserver Ts140"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkserver Ts240
Search vendor "Lenovo" for product "Thinkserver Ts240"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkserver Ts440
Search vendor "Lenovo" for product "Thinkserver Ts440"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkserver Ts540
Search vendor "Lenovo" for product "Thinkserver Ts540"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkstation E32
Search vendor "Lenovo" for product "Thinkstation E32"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkstation P300
Search vendor "Lenovo" for product "Thinkstation P300"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Thinkstation P310
Search vendor "Lenovo" for product "Thinkstation P310"
--
Safe