Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Lenovo — Vulnerabilities & Security Advisories 392

Browse all 392 CVE security advisories affecting Lenovo. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Lenovo operates as a global technology manufacturer, primarily producing personal computers, servers, and mobile devices for enterprise and consumer markets. Its software ecosystem, including pre-installed utilities and firmware, has historically exhibited vulnerabilities such as remote code execution, cross-site scripting, and privilege escalation flaws within management interfaces. These weaknesses often stem from complex supply chain integrations and legacy codebases embedded in hardware. While the company maintains standard security protocols, past incidents have highlighted risks associated with third-party components and default configurations in diagnostic tools. The current record of 359 Common Vulnerabilities and Exposures reflects the broad attack surface inherent in its diverse hardware portfolio. Continuous patching and rigorous code audits remain critical for mitigating these persistent threats across its extensive product line.

CVE ID Title CVSS Severity Published
CVE-2022-34884 Lenovo XClarity Controller 缓冲区错误漏洞 — Lenovo XClarity Controller CWE-121 7.2 High 2023-01-30
CVE-2022-40137 Lenovo Desktop 安全漏洞 — BIOS CWE-120 6.7 Medium 2023-01-30
CVE-2022-40136 Lenovo Desktops 缓冲区错误漏洞 — BIOS CWE-125 4.4 Medium 2023-01-30
CVE-2022-40135 Lenovo Desktops 缓冲区错误漏洞 — BIOS CWE-125 4.4 Medium 2023-01-30
CVE-2022-40134 Lenovo Desktops 缓冲区错误漏洞 — BIOS CWE-125 4.4 Medium 2023-01-30
CVE-2022-4816 Lenovo Safecenter 安全漏洞 — Safecenter CWE-400 6.2 Medium 2023-01-23
CVE-2022-3432 Lenovo IdeaPad Y700-14ISK 安全漏洞 — BIOS CWE-276 6.7 Medium 2023-01-23
CVE-2022-3430 Lenovo Notebook 安全漏洞 — BIOS CWE-276 6.7 Medium 2023-01-23
CVE-2022-1892 Lenovo Notebook 安全漏洞 — BIOS CWE-122 6.7 Medium 2023-01-23
CVE-2022-1891 Lenovo Notebook 安全漏洞 — BIOS CWE-122 6.7 Medium 2023-01-23
CVE-2022-1890 Lenovo Notebook 缓冲区错误漏洞 — BIOS CWE-122 6.7 Medium 2023-01-23
CVE-2022-1109 Lenovo Leyun cloud music 安全漏洞 — Leyun CWE-276 5.5 Medium 2023-01-20
CVE-2022-4435 Lenovo ThinkPad 缓冲区错误漏洞 — ThinkPad X13s CWE-126 6.7 Medium 2023-01-05
CVE-2022-4434 Lenovo ThinkPad 缓冲区错误漏洞 — ThinkPad X13s CWE-126 6.7 Medium 2023-01-05
CVE-2022-4433 Lenovo ThinkPad 缓冲区错误漏洞 — ThinkPad X13s CWE-126 6.7 Medium 2023-01-05
CVE-2022-4432 Lenovo ThinkPad 缓冲区错误漏洞 — ThinkPad X13s CWE-126 6.7 Medium 2023-01-05
CVE-2022-1513 Lenovo Pcmanager 操作系统命令注入漏洞 — PCManager CWE-78 7.3 High 2022-08-23
CVE-2022-1110 Lenovo Smart Standby Driver 安全漏洞 — Smart Standby Driver CWE-120 5.5 Medium 2022-05-18
CVE-2021-42852 Lenovo Personal Cloud Storage 操作系统命令注入漏洞 — Personal Cloud Storage A1 CWE-78 8.0 High 2022-05-18
CVE-2021-42851 Lenovo Personal Cloud Storage 安全漏洞 — Personal Cloud Storage A1 CWE-862 6.3 Medium 2022-05-18
CVE-2021-42850 Lenovo Personal Cloud Storage 信任管理问题漏洞 — Personal Cloud Storage A1 CWE-798 8.8 High 2022-05-18
CVE-2021-42849 Lenovo Personal Cloud Storage 授权问题漏洞 — Personal Cloud Storage A1 CWE-798 6.8 Medium 2022-05-18
CVE-2021-42848 Lenovo Personal Cloud Storage 安全漏洞 — Personal Cloud Storage A1 CWE-862 4.3 Medium 2022-05-18
CVE-2021-3969 Lenovo Vantage 安全漏洞 — IMController CWE-367 7.8 High 2022-05-18
CVE-2021-3956 Lenovo XClarity Controller 安全漏洞 — XClarity Controller (XCC) CWE-863 4.3 Medium 2022-05-18
CVE-2021-3922 Lenovo Vantage 竞争条件问题漏洞 — IMController CWE-367 7.8 High 2022-05-18
CVE-2021-3897 Lenovo Fan Power Controller2 授权问题漏洞 — Fan Power Controller2 (FPC2) CWE-288 9.8 Critical 2022-04-22
CVE-2021-3849 Lenovo Fan Power Controller2和Lenovo System Management Module 授权问题漏洞 — Fan Power Controller2 (FPC2) CWE-288 9.8 Critical 2022-04-22
CVE-2022-1108 Lenovo ThinkPad 缓冲区错误漏洞 — ThinkPad BIOS CWE-20 6.7 Medium 2022-04-22
CVE-2022-1107 Lenovo ThinkPad 权限许可和访问控制问题漏洞 — ThinkPad BIOS CWE-20 6.7 Medium 2022-04-22

This page lists every published CVE security advisory associated with Lenovo. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.