// For flags

CVE-2017-3754

 

Severity Score

6.7
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Some Lenovo brand notebook systems do not have write protections properly configured in the system BIOS. This could enable an attacker with physical or administrative access to a system to be able to flash the BIOS with an arbitrary image and potentially run malicious BIOS code.

Algunos sistemas notebook de la marca Lenovo no tienen protecciones de escritura configuradas apropiadamente en el BIOS del sistema. Esto podría permitir a un atacante con acceso físico o administrativo a un sistema para ser capaz de flashear el BIOS con una imagen arbitraria y potencialmente ejecutar código BIOS malicioso.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2016-12-16 CVE Reserved
  • 2017-07-17 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-09-16 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
References (1)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
710s-13ikb\/xiaoxin Air 13ikb
Search vendor "Lenovo" for product "710s-13ikb\/xiaoxin Air 13ikb"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
710s-13isk\/xiaoxin Air 13
Search vendor "Lenovo" for product "710s-13isk\/xiaoxin Air 13"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
K21-80
Search vendor "Lenovo" for product "K21-80"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
K22-80\/lenovo V720-12
Search vendor "Lenovo" for product "K22-80\/lenovo V720-12"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
K41-80
Search vendor "Lenovo" for product "K41-80"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Lenovo Ideapad 110-14ast
Search vendor "Lenovo" for product "Lenovo Ideapad 110-14ast"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Lenovo Ideapad 110-15ast
Search vendor "Lenovo" for product "Lenovo Ideapad 110-15ast"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Lenovo Ideapad 320-14ast
Search vendor "Lenovo" for product "Lenovo Ideapad 320-14ast"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Lenovo Ideapad 320-15ast
Search vendor "Lenovo" for product "Lenovo Ideapad 320-15ast"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Lenovo Xiaoxin Rui7000
Search vendor "Lenovo" for product "Lenovo Xiaoxin Rui7000"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Miix 710-12ikb
Search vendor "Lenovo" for product "Miix 710-12ikb"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Miix 720-12ikb
Search vendor "Lenovo" for product "Miix 720-12ikb"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Notebook 320-17ast
Search vendor "Lenovo" for product "Notebook 320-17ast"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Rescuer E520-15ikb
Search vendor "Lenovo" for product "Rescuer E520-15ikb"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
V110-14iap
Search vendor "Lenovo" for product "V110-14iap"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
V110-15iap
Search vendor "Lenovo" for product "V110-15iap"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
V110-15ikb
Search vendor "Lenovo" for product "V110-15ikb"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
V110-15isk
Search vendor "Lenovo" for product "V110-15isk"
--
Safe
Lenovo
Search vendor "Lenovo"
Bios
Search vendor "Lenovo" for product "Bios"
--
Affected
in Lenovo
Search vendor "Lenovo"
Yoga 710-11ikb
Search vendor "Lenovo" for product "Yoga 710-11ikb"
--
Safe