TROYANOSYVIRUS
Back to CVEs

CVE-2020-8335

MEDIUM
6.1

Description

The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad A285, BIOS versions up to r0xuj70w; A485, BIOS versions up to r0wuj65w; T495 BIOS versions up to r12uj55w; T495s/X395, BIOS versions up to r13uj47w, while the emergency-reset button is pressed which may allow for unauthorized access.

CVE Details

CVSS v3.1 Score6.1
SeverityMEDIUM
CVSS VectorCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Attack VectorPHYSICAL
ComplexityLOW
Privileges RequiredNONE
User InteractionNONE
Published9/1/2020
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

lenovo:thinkpad_a275lenovo:thinkpad_a275_firmwarelenovo:thinkpad_a285lenovo:thinkpad_a285_firmwarelenovo:thinkpad_a475lenovo:thinkpad_a475_firmwarelenovo:thinkpad_a485lenovo:thinkpad_a485_firmwarelenovo:thinkpad_t495_driftlenovo:thinkpad_t495_drift_firmwarelenovo:thinkpad_t495s_jazzlenovo:thinkpad_t495s_jazz_firmwarelenovo:thinkpad_x1_carbon_\(20bx\)lenovo:thinkpad_x1_carbon_\(20bx\)_firmwarelenovo:thinkpad_x395lenovo:thinkpad_x395_firmware

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.