Description
An incorrect permissions vulnerability was reported in Elliptic Labs Virtual Lock Sensor that could allow a local, authenticated user to escalate privileges.
Reserved 2025-01-30 | Published 2025-07-17 | Updated 2025-07-17 | Assigner
lenovoHIGH: 8.5CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
HIGH: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Problem types
CWE-276: Incorrect Default Permissions
Product status
Default status
unaffected
Any version before 1000.100.108.548
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 1000.100.108.858
affected
Default status
unaffected
Any version before 1000.100.108.1893
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 1000.100.108.6136
affected
Default status
unaffected
Any version before 1000.100.108.774
affected
Default status
unaffected
Any version before 1000.100.108.858
affected
Default status
unaffected
Any version before 1000.100.106.2391
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 1000.100.108.900
affected
Default status
unaffected
Any version before 1000.100.108.2235
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 3.2.61209.5
affected
Default status
unaffected
Any version before 3.2.61209.5
affected
Default status
unaffected
Any version before 1000.100.108.858
affected
Default status
unaffected
Any version before 1000.100.108.1893
affected
Default status
unaffected
Any version before 1000.100.108.6136
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 1000.100.108.858
affected
Default status
unaffected
Any version before 1000.100.108.1893
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 1000.100.109.82
affected
Default status
unaffected
Any version before 1000.100.108.858
affected
Default status
unaffected
Any version before 1000.100.106.2391
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 1000.100.108.761
affected
Default status
unaffected
Any version before 1000.100.108.2234
affected
Default status
unaffected
Any version before 1000.100.108.801
affected
Default status
unaffected
Any version before 1000.100.108.761
affected
Credits
Lenovo thanks Alexander Staalgaard, JN Data Red Team, for reporting this issue. finder
References
support.lenovo.com/us/en/product_security/LEN-182738
cve.org (CVE-2025-0886)
nvd.nist.gov (CVE-2025-0886)
Download JSON