Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2636▼ 212 respecto a la semana anterior
Críticas / altas1386▲ 155 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (6.9)0.21%—Lenovo DiagnosticsLenovo Hardware Scan15/4/202624/8/2026
During an internal security assessment, a potential vulnerability was discovered in Lenovo Diagnostics and the HardwareScanAddin used in Lenovo Vantage that, during installation or when using hardware scan, could allow a local authenticated user to perform an arbitrary file write with elevated privileges.
ModificadaAlta (7.1)0.12%—Lenovo System Update PluginLenovo Hardware Scan PluginLenovo Hardware Scan Addin27/10/202317/6/2026
A denial of service vulnerability was reported in Lenovo Vantage HardwareScan Plugin version 1.3.0.5 and earlier that could allow a local attacker to delete contents of an arbitrary directory under certain conditions.
ModificadaAlta (7.8)0.12%—Lenovo System Update PluginLenovo Hardware Scan PluginLenovo Hardware Scan Addin27/10/202317/6/2026
A privilege elevation vulnerability was reported in the Lenovo Vantage SystemUpdate plugin version 2.0.0.212 and earlier that could allow a local attacker to execute arbitrary code with elevated privileges.
ModificadaMedia (6.3)0.10%—Lenovo System Update PluginLenovo Hardware Scan PluginLenovo Hardware Scan Addin27/10/202317/6/2026
A Time of Check Time of Use (TOCTOU) vulnerability was reported in the Lenovo Vantage SystemUpdate Plugin version 2.0.0.212 and earlier that could allow a local attacker to delete arbitrary files.
ModificadaAlta (7.8)0.42%—Lenovo Hardware Scan14/10/202017/6/2026
A DLL search path vulnerability was reported in the Lenovo HardwareScan Plugin for the Lenovo Vantage hardware scan feature prior to version 1.0.46.11 that could allow escalation of privilege.