Home
MEDIUM: 5.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:NMEDIUM: 4.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:NDefault status
unaffected
Any version before 7.3.8
affected
Description
A vulnerability was identified in the Lenovo Android Application, distributed exclusively on tablets in the Chinese market, that could allow a website visited by the built-in browser to overwrite system clipboard contents.
Problem types
CWE-749: Exposed Dangerous Method or Function
Product status
Any version before 7.3.8
Credits
Lenovo thanks Xinfeng Chen 陈鑫峰 and Mingming Wan 万明明 from Geely Zero Lab at Geely Auto for reporting this vulnerability.
References
iknow.lenovo.com.cn/detail/440821
shop.lenovo.com.cn/