CVE-2020-8333
A potential vulnerability in the SMI callback function used in the EEPROM driver in some Lenovo Desktops and ThinkStation models may allow arbitrary code execution
Published:Sep 24, 2020
Last Modified:Nov 21, 2024
EPS:Sep 24, 2020
EPSS Score:0.00038
CVSS Score:6.4
Affected Products
Vendor
Product
Action
Vendor
Lenovo
Product
63
Lenovo
63
Vendor
Lenovo
Product
63 Firmware
Lenovo
63 Firmware
Vendor
Lenovo
Product
H50-30g
Lenovo
H50-30g
Vendor
Lenovo
Product
H50-30g Firmware
Lenovo
H50-30g Firmware
Vendor
Lenovo
Product
M4500
Lenovo
M4500
Vendor
Lenovo
Product
M4500 Firmware
Lenovo
M4500 Firmware
Vendor
Lenovo
Product
M4550
Lenovo
M4550
Vendor
Lenovo
Product
M4550 Firmware
Lenovo
M4550 Firmware
Vendor
Lenovo
Product
Qitian 4500
Lenovo
Qitian 4500
Vendor
Lenovo
Product
Qitian 4500 Firmware
Lenovo
Qitian 4500 Firmware
Vendor
Lenovo
Product
Qitian B4550
Lenovo
Qitian B4550
Vendor
Lenovo
Product
Qitian B4550 Firmware
Lenovo
Qitian B4550 Firmware
Vendor
Lenovo
Product
Qitian M4550
Lenovo
Qitian M4550
Vendor
Lenovo
Product
Qitian M4550 Firmware
Lenovo
Qitian M4550 Firmware
Vendor
Lenovo
Product
Thinkcentre E73
Lenovo
Thinkcentre E73
Vendor
Lenovo
Product
Thinkcentre E73 Firmware
Lenovo
Thinkcentre E73 Firmware
Vendor
Lenovo
Product
Thinkcentre E73s
Lenovo
Thinkcentre E73s
Vendor
Lenovo
Product
Thinkcentre E73s Firmware
Lenovo
Thinkcentre E73s Firmware
Vendor
Lenovo
Product
Thinkcentre E93
Lenovo
Thinkcentre E93
Vendor
Lenovo
Product
Thinkcentre E93 Firmware
Lenovo
Thinkcentre E93 Firmware
Vendor
Lenovo
Product
Thinkcentre M4500k
Lenovo
Thinkcentre M4500k
Vendor
Lenovo
Product
Thinkcentre M4500k Firmware
Lenovo
Thinkcentre M4500k Firmware
Vendor
Lenovo
Product
Thinkcentre M4500q
Lenovo
Thinkcentre M4500q
Vendor
Lenovo
Product
Thinkcentre M4500q Firmware
Lenovo
Thinkcentre M4500q Firmware
Vendor
Lenovo
Product
Thinkcentre M4500s
Lenovo
Thinkcentre M4500s
Vendor
Lenovo
Product
Thinkcentre M4500s Firmware
Lenovo
Thinkcentre M4500s Firmware
Vendor
Lenovo
Product
Thinkcentre M4500t
Lenovo
Thinkcentre M4500t
Vendor
Lenovo
Product
Thinkcentre M4500t Firmware
Lenovo
Thinkcentre M4500t Firmware
Vendor
Lenovo
Product
Thinkcentre M9350z
Lenovo
Thinkcentre M9350z
Vendor
Lenovo
Product
Thinkcentre M9350z Firmware
Lenovo
Thinkcentre M9350z Firmware
Vendor
Lenovo
Product
Thinkcentre M93z
Lenovo
Thinkcentre M93z
Vendor
Lenovo
Product
Thinkcentre M93z Firmware
Lenovo
Thinkcentre M93z Firmware
Vendor
Lenovo
Product
Thinkstation C30
Lenovo
Thinkstation C30
Vendor
Lenovo
Product
Thinkstation C30 Firmware
Lenovo
Thinkstation C30 Firmware
Vendor
Lenovo
Product
Thinkstation D30
Lenovo
Thinkstation D30
Vendor
Lenovo
Product
Thinkstation D30 Firmware
Lenovo
Thinkstation D30 Firmware
Vendor
Lenovo
Product
Thinkstation E32
Lenovo
Thinkstation E32
Vendor
Lenovo
Product
Thinkstation E32 Firmware
Lenovo
Thinkstation E32 Firmware
Vendor
Lenovo
Product
Thinkstation P300
Lenovo
Thinkstation P300
Vendor
Lenovo
Product
Thinkstation P300 Firmware
Lenovo
Thinkstation P300 Firmware
Vendor
Lenovo
Product
Thinkstation S30
Lenovo
Thinkstation S30
Vendor
Lenovo
Product
Thinkstation S30 Firmware
Lenovo
Thinkstation S30 Firmware
Vendor
Lenovo
Product
Yangtian Afh81
Lenovo
Yangtian Afh81
Vendor
Lenovo
Product
Yangtian Afh81 Firmware
Lenovo
Yangtian Afh81 Firmware
Vendor
Lenovo
Product
Yangtian Mc H81
Lenovo
Yangtian Mc H81
Vendor
Lenovo
Product
Yangtian Mc H81 Firmware
Lenovo
Yangtian Mc H81 Firmware
Vendor
Lenovo
Product
Yangtian Mf H81 Pci
Lenovo
Yangtian Mf H81 Pci
Vendor
Lenovo
Product
Yangtian Mf H81 Pci Firmware
Lenovo
Yangtian Mf H81 Pci Firmware
Vendor
Lenovo
Product
Yangtian Tc H81 Pci
Lenovo
Yangtian Tc H81 Pci
Vendor
Lenovo
Product
Yangtian Tc H81 Pci Firmware
Lenovo
Yangtian Tc H81 Pci Firmware
Vendor
Lenovo
Product
Yangtian Wcc H81 Pci
Lenovo
Yangtian Wcc H81 Pci
Vendor
Lenovo
Product
Yangtian Wcc H81 Pci Firmware
Lenovo
Yangtian Wcc H81 Pci Firmware
Vendor
Lenovo
Product
Yangtian Wf H81 Pci
Lenovo
Yangtian Wf H81 Pci
Vendor
Lenovo
Product
Yangtian Wf H81 Pci Firmware
Lenovo
Yangtian Wf H81 Pci Firmware
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
