// For flags

CVE-2022-1107

 

Severity Score

6.7
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

During an internal product security audit a potential vulnerability due to use of Boot Services in the SmmOEMInt15 SMI handler was discovered in some ThinkPad models could be exploited by an attacker with elevated privileges that could allow for execution of code.

Durante una auditoría de seguridad interna del producto se descubrió una posible vulnerabilidad debida al uso de los servicios de arranque en el manejador SMI SmmOEMInt15 en algunos modelos de ThinkPad que podría ser explotada por un atacante con privilegios elevados que podría permitir la ejecución de código

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2022-03-27 CVE Reserved
  • 2022-04-22 CVE Published
  • 2023-11-13 EPSS Updated
  • 2024-08-02 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-20: Improper Input Validation
  • CWE-269: Improper Privilege Management
CAPEC
References (1)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Lenovo
Search vendor "Lenovo"
Thinkpad 11e Firmware
Search vendor "Lenovo" for product "Thinkpad 11e Firmware"
< n15et78w
Search vendor "Lenovo" for product "Thinkpad 11e Firmware" and version " < n15et78w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad 11e
Search vendor "Lenovo" for product "Thinkpad 11e"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad Helix Firmware
Search vendor "Lenovo" for product "Thinkpad Helix Firmware"
< n17eta8w
Search vendor "Lenovo" for product "Thinkpad Helix Firmware" and version " < n17eta8w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad Helix
Search vendor "Lenovo" for product "Thinkpad Helix"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad L560 Firmware
Search vendor "Lenovo" for product "Thinkpad L560 Firmware"
< n1het85w
Search vendor "Lenovo" for product "Thinkpad L560 Firmware" and version " < n1het85w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad L560
Search vendor "Lenovo" for product "Thinkpad L560"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad L570 Firmware
Search vendor "Lenovo" for product "Thinkpad L570 Firmware"
< n1xet65w
Search vendor "Lenovo" for product "Thinkpad L570 Firmware" and version " < n1xet65w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad L570
Search vendor "Lenovo" for product "Thinkpad L570"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad P50s Firmware
Search vendor "Lenovo" for product "Thinkpad P50s Firmware"
< n1ket46w
Search vendor "Lenovo" for product "Thinkpad P50s Firmware" and version " < n1ket46w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad P50s
Search vendor "Lenovo" for product "Thinkpad P50s"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad P51s Firmware
Search vendor "Lenovo" for product "Thinkpad P51s Firmware"
< n1vet50w
Search vendor "Lenovo" for product "Thinkpad P51s Firmware" and version " < n1vet50w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad P51s
Search vendor "Lenovo" for product "Thinkpad P51s"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad P52s Firmware
Search vendor "Lenovo" for product "Thinkpad P52s Firmware"
< n27et36w
Search vendor "Lenovo" for product "Thinkpad P52s Firmware" and version " < n27et36w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad P52s
Search vendor "Lenovo" for product "Thinkpad P52s"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad S540 Firmware
Search vendor "Lenovo" for product "Thinkpad S540 Firmware"
< gpet80ww
Search vendor "Lenovo" for product "Thinkpad S540 Firmware" and version " < gpet80ww"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad S540
Search vendor "Lenovo" for product "Thinkpad S540"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad T550 Firmware
Search vendor "Lenovo" for product "Thinkpad T550 Firmware"
< n11et50w
Search vendor "Lenovo" for product "Thinkpad T550 Firmware" and version " < n11et50w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad T550
Search vendor "Lenovo" for product "Thinkpad T550"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad T560 Firmware
Search vendor "Lenovo" for product "Thinkpad T560 Firmware"
< n1ket46w
Search vendor "Lenovo" for product "Thinkpad T560 Firmware" and version " < n1ket46w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad T560
Search vendor "Lenovo" for product "Thinkpad T560"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad T570 Firmware
Search vendor "Lenovo" for product "Thinkpad T570 Firmware"
< n1vet50w
Search vendor "Lenovo" for product "Thinkpad T570 Firmware" and version " < n1vet50w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad T570
Search vendor "Lenovo" for product "Thinkpad T570"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad T580 Firmware
Search vendor "Lenovo" for product "Thinkpad T580 Firmware"
< n27et36w
Search vendor "Lenovo" for product "Thinkpad T580 Firmware" and version " < n27et36w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad T580
Search vendor "Lenovo" for product "Thinkpad T580"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X1 Tablet Gen 1 Firmware
Search vendor "Lenovo" for product "Thinkpad X1 Tablet Gen 1 Firmware"
< n1let86w
Search vendor "Lenovo" for product "Thinkpad X1 Tablet Gen 1 Firmware" and version " < n1let86w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X1 Tablet Gen 1
Search vendor "Lenovo" for product "Thinkpad X1 Tablet Gen 1"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X1 Tablet Gen 2 Firmware
Search vendor "Lenovo" for product "Thinkpad X1 Tablet Gen 2 Firmware"
< n1oet50w
Search vendor "Lenovo" for product "Thinkpad X1 Tablet Gen 2 Firmware" and version " < n1oet50w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X1 Tablet Gen 2
Search vendor "Lenovo" for product "Thinkpad X1 Tablet Gen 2"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad W540 Firmware
Search vendor "Lenovo" for product "Thinkpad W540 Firmware"
< gnet92ww
Search vendor "Lenovo" for product "Thinkpad W540 Firmware" and version " < gnet92ww"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad W540
Search vendor "Lenovo" for product "Thinkpad W540"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad W541 Firmware
Search vendor "Lenovo" for product "Thinkpad W541 Firmware"
< gnet92ww
Search vendor "Lenovo" for product "Thinkpad W541 Firmware" and version " < gnet92ww"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad W541
Search vendor "Lenovo" for product "Thinkpad W541"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad W550s Firmware
Search vendor "Lenovo" for product "Thinkpad W550s Firmware"
< n11et50w
Search vendor "Lenovo" for product "Thinkpad W550s Firmware" and version " < n11et50w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad W550s
Search vendor "Lenovo" for product "Thinkpad W550s"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X1 Carbon 3rd Gen Firmware
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 3rd Gen Firmware"
< n14et52w
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 3rd Gen Firmware" and version " < n14et52w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X1 Carbon 3rd Gen
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 3rd Gen"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X1 Carbon 4th Gen Firmware
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 4th Gen Firmware"
< n1fet70w
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 4th Gen Firmware" and version " < n1fet70w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X1 Carbon 4th Gen
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 4th Gen"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X1 Carbon 5th Gen Kabylake Firmware
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 5th Gen Kabylake Firmware"
< n1met55w
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 5th Gen Kabylake Firmware" and version " < n1met55w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X1 Carbon 5th Gen Kabylake
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 5th Gen Kabylake"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X1 Carbon 5th Gen Skylake Firmware
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 5th Gen Skylake Firmware"
< n1met55w
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 5th Gen Skylake Firmware" and version " < n1met55w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X1 Carbon 5th Gen Skylake
Search vendor "Lenovo" for product "Thinkpad X1 Carbon 5th Gen Skylake"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X1 Yoga Firmware
Search vendor "Lenovo" for product "Thinkpad X1 Yoga Firmware"
< n1fet70w
Search vendor "Lenovo" for product "Thinkpad X1 Yoga Firmware" and version " < n1fet70w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X1 Yoga
Search vendor "Lenovo" for product "Thinkpad X1 Yoga"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X1 Yoga Gen 2 Firmware
Search vendor "Lenovo" for product "Thinkpad X1 Yoga Gen 2 Firmware"
< n1net47w
Search vendor "Lenovo" for product "Thinkpad X1 Yoga Gen 2 Firmware" and version " < n1net47w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X1 Yoga Gen 2
Search vendor "Lenovo" for product "Thinkpad X1 Yoga Gen 2"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X1 Yoga Gen 3 Firmware
Search vendor "Lenovo" for product "Thinkpad X1 Yoga Gen 3 Firmware"
< n25et50w
Search vendor "Lenovo" for product "Thinkpad X1 Yoga Gen 3 Firmware" and version " < n25et50w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X1 Yoga Gen 3
Search vendor "Lenovo" for product "Thinkpad X1 Yoga Gen 3"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X250 Firmware
Search vendor "Lenovo" for product "Thinkpad X250 Firmware"
< n10et58w
Search vendor "Lenovo" for product "Thinkpad X250 Firmware" and version " < n10et58w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X250
Search vendor "Lenovo" for product "Thinkpad X250"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X280 Firmware
Search vendor "Lenovo" for product "Thinkpad X280 Firmware"
< n20et44w
Search vendor "Lenovo" for product "Thinkpad X280 Firmware" and version " < n20et44w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X280
Search vendor "Lenovo" for product "Thinkpad X280"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad X390 Firmware
Search vendor "Lenovo" for product "Thinkpad X390 Firmware"
< n2let60w
Search vendor "Lenovo" for product "Thinkpad X390 Firmware" and version " < n2let60w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad X390
Search vendor "Lenovo" for product "Thinkpad X390"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad 11e Yoga Firmware
Search vendor "Lenovo" for product "Thinkpad 11e Yoga Firmware"
< n15et78w
Search vendor "Lenovo" for product "Thinkpad 11e Yoga Firmware" and version " < n15et78w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad 11e Yoga
Search vendor "Lenovo" for product "Thinkpad 11e Yoga"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad Yoga 15 Firmware
Search vendor "Lenovo" for product "Thinkpad Yoga 15 Firmware"
< n19et61w
Search vendor "Lenovo" for product "Thinkpad Yoga 15 Firmware" and version " < n19et61w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad Yoga 15
Search vendor "Lenovo" for product "Thinkpad Yoga 15"
--
Safe
Lenovo
Search vendor "Lenovo"
Thinkpad Yoga 260 Firmware
Search vendor "Lenovo" for product "Thinkpad Yoga 260 Firmware"
< n1get98w
Search vendor "Lenovo" for product "Thinkpad Yoga 260 Firmware" and version " < n1get98w"
-
Affected
in Lenovo
Search vendor "Lenovo"
Thinkpad Yoga 260
Search vendor "Lenovo" for product "Thinkpad Yoga 260"
--
Safe