在 Lenovo Filez 客户端应用程序中发现了一个潜在的权限不当(improper permissions)漏洞,该漏洞可能允许经过身份验证的本地用户提升其系统权限(即从普通用户提升为管理员等更高权限)。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Lenovo | FileZ Client | < 11.7.1.0 |
affected |
| Lenovo | FileZ Enterprise | < 11.5.1.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Lenovo | FileZ Client | 0 ~ 11.7.1.0 | - |
|
| Lenovo | FileZ Enterprise | 0 ~ 11.5.1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-75940 | 9.1 CRITICAL | 联想健康App敏感健康信息泄露漏洞 |
| CVE-2026-63427 | 7.8 HIGH | Lenovo Software Fix 认证绕过致特权执行漏洞 |
| CVE-2026-19136 | 7.8 HIGH | 天息AI智能体PC应用命令注入漏洞 |
| CVE-2026-18994 | 7.1 HIGH | 联想文件管理器授权不当致本地文件读写 |
No comments yet