// For flags

CVE-2020-8333

 

Severity Score

7.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A potential vulnerability in the SMI callback function used in the EEPROM driver in some Lenovo Desktops and ThinkStation models may allow arbitrary code execution

Una vulnerabilidad potencial en la función de devolución de llamada SMI usada en el controlador EEPROM en algunos modelos de Lenovo Desktops y ThinkStation puede permitir una ejecución de código arbitrario

*Credits: Lenovo thanks yngwei (@yngweijw), driedfish (@d3af1sh), and MengHao, Li of IIE VARAS
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
High
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2020-01-28 CVE Reserved
  • 2020-09-24 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-09-16 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
References (1)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Lenovo
Search vendor "Lenovo"
63 Firmware
Search vendor "Lenovo" for product "63 Firmware"
< fckt98a
Search vendor "Lenovo" for product "63 Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
63
Search vendor "Lenovo" for product "63"
--
Safe
Lenovo
Search vendor "Lenovo"
H50-30g Firmware
Search vendor "Lenovo" for product "H50-30g Firmware"
< fckt98a
Search vendor "Lenovo" for product "H50-30g Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
H50-30g
Search vendor "Lenovo" for product "H50-30g"
--
Safe
Lenovo
Search vendor "Lenovo"
M4500 Firmware
Search vendor "Lenovo" for product "M4500 Firmware"
< fckt98a
Search vendor "Lenovo" for product "M4500 Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
M4500
Search vendor "Lenovo" for product "M4500"
--
Safe
Lenovo
Search vendor "Lenovo"
M4550 Firmware
Search vendor "Lenovo" for product "M4550 Firmware"
< fckt98a
Search vendor "Lenovo" for product "M4550 Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
M4550
Search vendor "Lenovo" for product "M4550"
--
Safe
Lenovo
Search vendor "Lenovo"
Qitian 4500 Firmware
Search vendor "Lenovo" for product "Qitian 4500 Firmware"
< fckt98a
Search vendor "Lenovo" for product "Qitian 4500 Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Qitian 4500
Search vendor "Lenovo" for product "Qitian 4500"
--
Safe
Lenovo
Search vendor "Lenovo"
Qitian B4550 Firmware
Search vendor "Lenovo" for product "Qitian B4550 Firmware"
< fckt98a
Search vendor "Lenovo" for product "Qitian B4550 Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Qitian B4550
Search vendor "Lenovo" for product "Qitian B4550"
--
Safe
Lenovo
Search vendor "Lenovo"
Qitian M4550 Firmware
Search vendor "Lenovo" for product "Qitian M4550 Firmware"
< fckt98a
Search vendor "Lenovo" for product "Qitian M4550 Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Qitian M4550
Search vendor "Lenovo" for product "Qitian M4550"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkcentre E73 Firmware
Search vendor "Lenovo" for product "Thinkcentre E73 Firmware"
< fckt98a
Search vendor "Lenovo" for product "Thinkcentre E73 Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre E73
Search vendor "Lenovo" for product "Thinkcentre E73"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkcentre E73s Firmware
Search vendor "Lenovo" for product "Thinkcentre E73s Firmware"
< fckt98a
Search vendor "Lenovo" for product "Thinkcentre E73s Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre E73s
Search vendor "Lenovo" for product "Thinkcentre E73s"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkcentre E93 Firmware
Search vendor "Lenovo" for product "Thinkcentre E93 Firmware"
< fbktdea
Search vendor "Lenovo" for product "Thinkcentre E93 Firmware" and version " < fbktdea"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre E93
Search vendor "Lenovo" for product "Thinkcentre E93"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkcentre M4500k Firmware
Search vendor "Lenovo" for product "Thinkcentre M4500k Firmware"
< fckt98a
Search vendor "Lenovo" for product "Thinkcentre M4500k Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M4500k
Search vendor "Lenovo" for product "Thinkcentre M4500k"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkcentre M4500q Firmware
Search vendor "Lenovo" for product "Thinkcentre M4500q Firmware"
< fhkt85a
Search vendor "Lenovo" for product "Thinkcentre M4500q Firmware" and version " < fhkt85a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M4500q
Search vendor "Lenovo" for product "Thinkcentre M4500q"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkcentre M4500t Firmware
Search vendor "Lenovo" for product "Thinkcentre M4500t Firmware"
< fckt98a
Search vendor "Lenovo" for product "Thinkcentre M4500t Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M4500t
Search vendor "Lenovo" for product "Thinkcentre M4500t"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkcentre M4500s Firmware
Search vendor "Lenovo" for product "Thinkcentre M4500s Firmware"
< fckt98a
Search vendor "Lenovo" for product "Thinkcentre M4500s Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M4500s
Search vendor "Lenovo" for product "Thinkcentre M4500s"
--
Safe
Lenovo
Search vendor "Lenovo"
Yangtian Afh81 Firmware
Search vendor "Lenovo" for product "Yangtian Afh81 Firmware"
< fckt98a
Search vendor "Lenovo" for product "Yangtian Afh81 Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Yangtian Afh81
Search vendor "Lenovo" for product "Yangtian Afh81"
--
Safe
Lenovo
Search vendor "Lenovo"
Yangtian Mc H81 Firmware
Search vendor "Lenovo" for product "Yangtian Mc H81 Firmware"
< fckt98a
Search vendor "Lenovo" for product "Yangtian Mc H81 Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Yangtian Mc H81
Search vendor "Lenovo" for product "Yangtian Mc H81"
--
Safe
Lenovo
Search vendor "Lenovo"
Yangtian Mf H81 Pci Firmware
Search vendor "Lenovo" for product "Yangtian Mf H81 Pci Firmware"
< fckt98a
Search vendor "Lenovo" for product "Yangtian Mf H81 Pci Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Yangtian Mf H81 Pci
Search vendor "Lenovo" for product "Yangtian Mf H81 Pci"
--
Safe
Lenovo
Search vendor "Lenovo"
Yangtian Wf H81 Pci Firmware
Search vendor "Lenovo" for product "Yangtian Wf H81 Pci Firmware"
< fckt98a
Search vendor "Lenovo" for product "Yangtian Wf H81 Pci Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Yangtian Wf H81 Pci
Search vendor "Lenovo" for product "Yangtian Wf H81 Pci"
--
Safe
Lenovo
Search vendor "Lenovo"
Yangtian Tc H81 Pci Firmware
Search vendor "Lenovo" for product "Yangtian Tc H81 Pci Firmware"
< fckt98a
Search vendor "Lenovo" for product "Yangtian Tc H81 Pci Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Yangtian Tc H81 Pci
Search vendor "Lenovo" for product "Yangtian Tc H81 Pci"
--
Safe
Lenovo
Search vendor "Lenovo"
Yangtian Wcc H81 Pci Firmware
Search vendor "Lenovo" for product "Yangtian Wcc H81 Pci Firmware"
< fckt98a
Search vendor "Lenovo" for product "Yangtian Wcc H81 Pci Firmware" and version " < fckt98a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Yangtian Wcc H81 Pci
Search vendor "Lenovo" for product "Yangtian Wcc H81 Pci"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkcentre M9350z Firmware
Search vendor "Lenovo" for product "Thinkcentre M9350z Firmware"
< fekta2a
Search vendor "Lenovo" for product "Thinkcentre M9350z Firmware" and version " < fekta2a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M9350z
Search vendor "Lenovo" for product "Thinkcentre M9350z"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkcentre M93z Firmware
Search vendor "Lenovo" for product "Thinkcentre M93z Firmware"
< fekta2a
Search vendor "Lenovo" for product "Thinkcentre M93z Firmware" and version " < fekta2a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkcentre M93z
Search vendor "Lenovo" for product "Thinkcentre M93z"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkstation C30 Firmware
Search vendor "Lenovo" for product "Thinkstation C30 Firmware"
< a3kt70a
Search vendor "Lenovo" for product "Thinkstation C30 Firmware" and version " < a3kt70a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkstation C30
Search vendor "Lenovo" for product "Thinkstation C30"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkstation D30 Firmware
Search vendor "Lenovo" for product "Thinkstation D30 Firmware"
< a3kt70a
Search vendor "Lenovo" for product "Thinkstation D30 Firmware" and version " < a3kt70a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkstation D30
Search vendor "Lenovo" for product "Thinkstation D30"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkstation E32 Firmware
Search vendor "Lenovo" for product "Thinkstation E32 Firmware"
< fbktdea
Search vendor "Lenovo" for product "Thinkstation E32 Firmware" and version " < fbktdea"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkstation E32
Search vendor "Lenovo" for product "Thinkstation E32"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkstation P300 Firmware
Search vendor "Lenovo" for product "Thinkstation P300 Firmware"
< a2kt70a
Search vendor "Lenovo" for product "Thinkstation P300 Firmware" and version " < a2kt70a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkstation P300
Search vendor "Lenovo" for product "Thinkstation P300"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkstation S30 Firmware
Search vendor "Lenovo" for product "Thinkstation S30 Firmware"
< a2kt70a
Search vendor "Lenovo" for product "Thinkstation S30 Firmware" and version " < a2kt70a"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkstation S30
Search vendor "Lenovo" for product "Thinkstation S30"
--
Safe