CVE-2021-3614
 
Severity Score
6.8
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
A vulnerability was reported on some Lenovo Notebook systems that could allow an attacker with physical access to elevate privileges under certain conditions during a BIOS update performed by Lenovo Vantage.
Se ha reportado una vulnerabilidad en algunos sistemas de portátiles Lenovo que podría permitir a un atacante con acceso físico elevar los privilegios en determinadas condiciones durante una actualización de la BIOS llevada a cabo por Lenovo Vantage
*Credits:
Lenovo thanks Tim Boyd, NCC Group for reporting this issue.
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2021-06-23 CVE Reserved
- 2021-07-16 CVE Published
- 2024-03-31 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-636: Not Failing Securely ('Failing Open')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://support.lenovo.com/us/en/product_security/LEN-65529 | 2021-07-30 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Lenovo Search vendor "Lenovo" | Ideapad 1-11ada05 Firmware Search vendor "Lenovo" for product "Ideapad 1-11ada05 Firmware" | fqcn19ww Search vendor "Lenovo" for product "Ideapad 1-11ada05 Firmware" and version "fqcn19ww" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad 1-11ada05 Search vendor "Lenovo" for product "Ideapad 1-11ada05" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad 1-14ada05 Firmware Search vendor "Lenovo" for product "Ideapad 1-14ada05 Firmware" | fqcn19ww Search vendor "Lenovo" for product "Ideapad 1-14ada05 Firmware" and version "fqcn19ww" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad 1-14ada05 Search vendor "Lenovo" for product "Ideapad 1-14ada05" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | V130-15ikb Firmware Search vendor "Lenovo" for product "V130-15ikb Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | V130-15ikb Search vendor "Lenovo" for product "V130-15ikb" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | 100e 2nd Gen Firmware Search vendor "Lenovo" for product "100e 2nd Gen Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | 100e 2nd Gen Search vendor "Lenovo" for product "100e 2nd Gen" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | 300e 2nd Gen Firmware Search vendor "Lenovo" for product "300e 2nd Gen Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | 300e 2nd Gen Search vendor "Lenovo" for product "300e 2nd Gen" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad 730-13iml Firmware Search vendor "Lenovo" for product "Ideapad 730-13iml Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad 730-13iml Search vendor "Lenovo" for product "Ideapad 730-13iml" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad Flex 5-14alc05 Firmware Search vendor "Lenovo" for product "Ideapad Flex 5-14alc05 Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad Flex 5-14alc05 Search vendor "Lenovo" for product "Ideapad Flex 5-14alc05" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad Flex 5-15alc05 Firmware Search vendor "Lenovo" for product "Ideapad Flex 5-15alc05 Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad Flex 5-15alc05 Search vendor "Lenovo" for product "Ideapad Flex 5-15alc05" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad 1-11igl05 Firmware Search vendor "Lenovo" for product "Ideapad 1-11igl05 Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad 1-11igl05 Search vendor "Lenovo" for product "Ideapad 1-11igl05" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad 1-14igl05 Firmware Search vendor "Lenovo" for product "Ideapad 1-14igl05 Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad 1-14igl05 Search vendor "Lenovo" for product "Ideapad 1-14igl05" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad S940-14iil Firmware Search vendor "Lenovo" for product "Ideapad S940-14iil Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad S940-14iil Search vendor "Lenovo" for product "Ideapad S940-14iil" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad S940-14iwl Firmware Search vendor "Lenovo" for product "Ideapad S940-14iwl Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad S940-14iwl Search vendor "Lenovo" for product "Ideapad S940-14iwl" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad Slim 1-11ast-05 Firmware Search vendor "Lenovo" for product "Ideapad Slim 1-11ast-05 Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad Slim 1-11ast-05 Search vendor "Lenovo" for product "Ideapad Slim 1-11ast-05" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad Slim 1-14ast-05 Firmware Search vendor "Lenovo" for product "Ideapad Slim 1-14ast-05 Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad Slim 1-14ast-05 Search vendor "Lenovo" for product "Ideapad Slim 1-14ast-05" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | V130-15igm Firmware Search vendor "Lenovo" for product "V130-15igm Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | V130-15igm Search vendor "Lenovo" for product "V130-15igm" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | V130-15ikb Firmware Search vendor "Lenovo" for product "V130-15ikb Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | V130-15ikb Search vendor "Lenovo" for product "V130-15ikb" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | V330-15ikb Firmware Search vendor "Lenovo" for product "V330-15ikb Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | V330-15ikb Search vendor "Lenovo" for product "V330-15ikb" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | V330-15isk Firmware Search vendor "Lenovo" for product "V330-15isk Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | V330-15isk Search vendor "Lenovo" for product "V330-15isk" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad Yoga C940-15irh Firmware Search vendor "Lenovo" for product "Ideapad Yoga C940-15irh Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad Yoga C940-15irh Search vendor "Lenovo" for product "Ideapad Yoga C940-15irh" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad Yoga S730-13iml Firmware Search vendor "Lenovo" for product "Ideapad Yoga S730-13iml Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad Yoga S730-13iml Search vendor "Lenovo" for product "Ideapad Yoga S730-13iml" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad Yoga S940-14iil Firmware Search vendor "Lenovo" for product "Ideapad Yoga S940-14iil Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad Yoga S940-14iil Search vendor "Lenovo" for product "Ideapad Yoga S940-14iil" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Ideapad Yoga S940-14iwl Firmware Search vendor "Lenovo" for product "Ideapad Yoga S940-14iwl Firmware" | - | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Ideapad Yoga S940-14iwl Search vendor "Lenovo" for product "Ideapad Yoga S940-14iwl" | - | - |
Safe
|