Home
HIGH: 7.5 CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:NHIGH: 7.1 CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
unaffected
Any version before 10.12.3.0
affected
Default status
unaffected
Any version before 11.1.0.35
affected
Description
An improper certificate validation vulnerability was reported in the Lenovo Filez application that could allow a user capable of intercepting network traffic to execute arbitrary code.
Problem types
CWE-295: Improper Certificate Validation
Product status
Any version before 10.12.3.0
Any version before 11.1.0.35