CVE-2024-23593

A vulnerability was reported in a system recovery bootloader that was part of the Lenovo preloaded Windows 7 and 8 operating systems from 2012 to 2014 that could allow a privileged attacker with local access to modify the boot manager and escalate privileges.
Configurations

No configuration.

History

21 Nov 2024, 08:57

Type Values Removed Values Added
Summary
  • (es) Se informó una vulnerabilidad en un gestor de arranque de recuperación del sistema que formaba parte de los sistemas operativos Windows 7 y 8 precargados de Lenovo de 2012 a 2014 que podría permitir a un atacante privilegiado con acceso local modificar el administrador de arranque y escalar privilegios.
References () https://support.lenovo.com/us/en/product_security/LEN-132277 - () https://support.lenovo.com/us/en/product_security/LEN-132277 -

15 Apr 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-15 18:15

Updated : 2024-11-21 08:57


NVD link : CVE-2024-23593

Mitre link : CVE-2024-23593

CVE.ORG link : CVE-2024-23593


JSON object : View

Products Affected

No product.

CWE
CWE-1284

Improper Validation of Specified Quantity in Input