CVE-2015-5684
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A buffer overflow vulnerability was reported, (fixed and publicly disclosed in 2015) in the Lenovo Service Engine (LSE), affecting various versions of BIOS for Lenovo Notebooks, that could allow a remote user to execute arbitrary code on the system.
Published:Mar 27, 2020
Last Modified:Nov 21, 2024
EPS:Mar 27, 2020
EPSS Score:0.04065
CVSS Score:9.8
Affected Products
Vendor
Product
Action
Vendor
Lenovo
Product
B50-10
Lenovo
B50-10
Vendor
Lenovo
Product
B50-10 Firmware
Lenovo
B50-10 Firmware
Vendor
Lenovo
Product
Edge 15
Lenovo
Edge 15
Vendor
Lenovo
Product
Edge 15 Firmware
Lenovo
Edge 15 Firmware
Vendor
Lenovo
Product
Flex 2 Pro-15
Lenovo
Flex 2 Pro-15
Vendor
Lenovo
Product
Flex 2 Pro-15 Firmware
Lenovo
Flex 2 Pro-15 Firmware
Vendor
Lenovo
Product
Flex 3-1120
Lenovo
Flex 3-1120
Vendor
Lenovo
Product
Flex 3-1120 Firmware
Lenovo
Flex 3-1120 Firmware
Vendor
Lenovo
Product
Flex 3-1470
Lenovo
Flex 3-1470
Vendor
Lenovo
Product
Flex 3-1470 Firmware
Lenovo
Flex 3-1470 Firmware
Vendor
Lenovo
Product
Flex 3-1570
Lenovo
Flex 3-1570
Vendor
Lenovo
Product
Flex 3-1570 Firmware
Lenovo
Flex 3-1570 Firmware
Vendor
Lenovo
Product
G40-80
Lenovo
G40-80
Vendor
Lenovo
Product
G40-80 Firmware
Lenovo
G40-80 Firmware
Vendor
Lenovo
Product
G40-80m
Lenovo
G40-80m
Vendor
Lenovo
Product
G40-80m Firmware
Lenovo
G40-80m Firmware
Vendor
Lenovo
Product
G50-80
Lenovo
G50-80
Vendor
Lenovo
Product
G50-80 Firmware
Lenovo
G50-80 Firmware
Vendor
Lenovo
Product
G50-80 Touch
Lenovo
G50-80 Touch
Vendor
Lenovo
Product
G50-80 Touch Firmware
Lenovo
G50-80 Touch Firmware
Vendor
Lenovo
Product
G50-80 Touch V3000
Lenovo
G50-80 Touch V3000
Vendor
Lenovo
Product
G50-80 Touch V3000 Firmware
Lenovo
G50-80 Touch V3000 Firmware
Vendor
Lenovo
Product
G50-80m
Lenovo
G50-80m
Vendor
Lenovo
Product
G50-80m Firmware
Lenovo
G50-80m Firmware
Vendor
Lenovo
Product
G70-80
Lenovo
G70-80
Vendor
Lenovo
Product
G70-80 Firmware
Lenovo
G70-80 Firmware
Vendor
Lenovo
Product
Ideapad 100-14iby
Lenovo
Ideapad 100-14iby
Vendor
Lenovo
Product
Ideapad 100-14iby Firmware
Lenovo
Ideapad 100-14iby Firmware
Vendor
Lenovo
Product
Ideapad 100-15iby
Lenovo
Ideapad 100-15iby
Vendor
Lenovo
Product
Ideapad 100-15iby Firmware
Lenovo
Ideapad 100-15iby Firmware
Vendor
Lenovo
Product
M40-35
Lenovo
M40-35
Vendor
Lenovo
Product
M40-35 Firmware
Lenovo
M40-35 Firmware
Vendor
Lenovo
Product
S21e
Lenovo
S21e
Vendor
Lenovo
Product
S21e Firmware
Lenovo
S21e Firmware
Vendor
Lenovo
Product
S41-70
Lenovo
S41-70
Vendor
Lenovo
Product
S41-70 Firmware
Lenovo
S41-70 Firmware
Vendor
Lenovo
Product
S435
Lenovo
S435
Vendor
Lenovo
Product
S435 Firmware
Lenovo
S435 Firmware
Vendor
Lenovo
Product
U31-70
Lenovo
U31-70
Vendor
Lenovo
Product
U31-70 Firmware
Lenovo
U31-70 Firmware
Vendor
Lenovo
Product
U41-70
Lenovo
U41-70
Vendor
Lenovo
Product
U41-70 Firmware
Lenovo
U41-70 Firmware
Vendor
Lenovo
Product
Y40-80
Lenovo
Y40-80
Vendor
Lenovo
Product
Y40-80 Firmware
Lenovo
Y40-80 Firmware
Vendor
Lenovo
Product
Yoga 3 11
Lenovo
Yoga 3 11
Vendor
Lenovo
Product
Yoga 3 11 Firmware
Lenovo
Yoga 3 11 Firmware
Vendor
Lenovo
Product
Yoga 3 14
Lenovo
Yoga 3 14
Vendor
Lenovo
Product
Yoga 3 14 Firmware
Lenovo
Yoga 3 14 Firmware
Vendor
Lenovo
Product
Z41-70
Lenovo
Z41-70
Vendor
Lenovo
Product
Z41-70 Firmware
Lenovo
Z41-70 Firmware
Vendor
Lenovo
Product
Z51-70
Lenovo
Z51-70
Vendor
Lenovo
Product
Z51-70 Firmware
Lenovo
Z51-70 Firmware
Vendor
Lenovo
Product
Z70-80
Lenovo
Z70-80
Vendor
Lenovo
Product
Z70-80 Firmware
Lenovo
Z70-80 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
