Home
MEDIUM: 6.0 CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:NMEDIUM: 5.3 CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
Any version before 10.12.3.0
affected
Default status
unaffected
Any version before 11.1.0.35
affected
Description
An improper certificate validation vulnerability was reported in the Lenovo Filez application that could allow a user capable of intercepting network traffic to obtain sensitive user data from the application.
Problem types
CWE-295: Improper Certificate Validation
Product status
Any version before 10.12.3.0
Any version before 11.1.0.35