Lenovo Smart Clock Essential是中国联想(Lenovo)公司的一款智能音响。 Lenovo Smart Clock Essential 4.9.113版本存在信任管理问题漏洞,该漏洞源于存在硬编码密码漏洞,攻击者利用该漏洞可以通过特制的命令行参数提升能力。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Lenovo | Lenovo Smart Clock Essential with Alexa Built In | Versions prior to v90 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-0683 | 8.3 HIGH | Lenovo XClarity Controller 安全漏洞 |
| CVE-2022-4568 | 7.0 HIGH | Lenovo System Update 安全漏洞 |
| CVE-2023-25492 | 6.3 MEDIUM | Lenovo XClarity Controller 格式化字符串错误漏洞 |
| CVE-2022-48186 | 6.2 MEDIUM | Lenovo Baiying 信任管理问题漏洞 |
No comments yet