Browse all 392 CVE security advisories affecting Lenovo. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Lenovo operates as a global technology manufacturer, primarily producing personal computers, servers, and mobile devices for enterprise and consumer markets. Its software ecosystem, including pre-installed utilities and firmware, has historically exhibited vulnerabilities such as remote code execution, cross-site scripting, and privilege escalation flaws within management interfaces. These weaknesses often stem from complex supply chain integrations and legacy codebases embedded in hardware. While the company maintains standard security protocols, past incidents have highlighted risks associated with third-party components and default configurations in diagnostic tools. The current record of 359 Common Vulnerabilities and Exposures reflects the broad attack surface inherent in its diverse hardware portfolio. Continuous patching and rigorous code audits remain critical for mitigating these persistent threats across its extensive product line.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2020-8320 | 多款Lenovo ThinkPad产品安全漏洞 — BIOS CWE-489 | 6.4 | Medium | 2020-06-09 |
| CVE-2020-8321 | Lenovo System Lock Preinstallation driver 安全漏洞 — BIOS | 6.4 | Medium | 2020-06-09 |
| CVE-2019-6173 | Lenovo安装包代码问题漏洞 — Installation Packages CWE-426 | 6.7 | Medium | 2020-06-09 |
| CVE-2020-8329 | Lenovo Printer LJ4010DN 输入验证错误漏洞 — Printer LJ4010DN | 5.3 | Medium | 2020-05-28 |
| CVE-2020-8330 | Lenovo Printer LJ4010DN 输入验证错误漏洞 — Printer LJ4010DN | 5.3 | Medium | 2020-05-28 |
| CVE-2020-8324 | Lenovo System Interface Foundation 输入验证错误漏洞 — LenovoAppScenarioPluginSystem for Lenovo System Interface Foundation CWE-347 | 5.0 | Medium | 2020-04-14 |
| CVE-2020-8327 | Lenovo System Interface Foundation 代码问题漏洞 — Vantage CWE-428 | 7.3 | High | 2020-04-14 |
| CVE-2020-8316 | Lenovo Vantage 信息泄露漏洞 — Vantage CWE-200 | 4.4 | Medium | 2020-04-14 |
| CVE-2020-8318 | Lenovo System Interface Foundation 安全漏洞 — LenovoSystemUpdatePlugin for Lenovo System Interface Foundation | 7.3 | High | 2020-04-14 |
| CVE-2020-8319 | Lenovo System Interface Foundation 安全漏洞 — Lenovo System Interface Foundation | 7.3 | High | 2020-04-14 |
| CVE-2019-19756 | Lenovo XClarity Administrator 日志信息泄露漏洞 — XClarity Administrator (LXCA) CWE-532 | 7.9 | High | 2020-03-13 |
| CVE-2019-6195 | Lenovo XClarity Controller 权限许可和访问控制问题漏洞 — XClarity Controller (XCC) CWE-264 | 4.8 | Medium | 2020-02-14 |
| CVE-2019-6193 | Lenovo XClarity Administrator 信息泄露漏洞 — XClarity Administrator (LXCA) CWE-284 | 7.5 | High | 2020-02-14 |
| CVE-2019-6194 | Lenovo XClarity Administrator 代码问题漏洞 — XClarity Administrator (LXCA) CWE-611 | 5.7 | Medium | 2020-02-14 |
| CVE-2019-6190 | Lenovo Desktop和WorkStation BIOS 安全漏洞 — BIOS | 5.0 | Medium | 2020-02-14 |
| CVE-2019-19757 | Lenovo XClarity Administrator 跨站脚本漏洞 — XClarity Administrator (LXCA) CWE-79 | 5.4 | Medium | 2020-02-14 |
| CVE-2019-19758 | Lenovo EZ Media & Backup Center 输入验证错误漏洞 — EZ Media & Backup Center ix2 CWE-601 | 6.1 | Medium | 2020-02-14 |
| CVE-2019-6192 | Lenovo Power Management Driver 缓冲区错误漏洞 — Power Management driver | 4.4 | Medium | 2019-12-10 |
| CVE-2019-6183 | Lenovo Energy Management Driver 输入验证错误漏洞 — Energy Management driver | 7.5 | - | 2019-12-10 |
| CVE-2019-6191 | Lenovo Paper 安全漏洞 — LenovoPaper | 7.8 | - | 2019-11-20 |
| CVE-2019-6187 | Lenovo XClarity Controller 注入漏洞 — Lenovo XClarity Controller (XCC) | 6.5 | - | 2019-11-20 |
| CVE-2019-6189 | Lenovo System Interface Foundation 代码问题漏洞 — Lenovo System Interface Foundation | 6.7 | - | 2019-11-20 |
| CVE-2019-6176 | Lenovo ThinkPad USB-C Dock 安全漏洞 — ThinkPad USB-C Dock Firmware | 7.5 | - | 2019-11-20 |
| CVE-2019-6184 | Lenovo Customer Engagement Service 安全漏洞 — Customer Engagement Service (CCSDK) | 7.8 | - | 2019-11-20 |
| CVE-2019-6186 | Lenovo System Interface Foundation 安全漏洞 — Lenovo System Interface Foundation | 7.8 | - | 2019-11-20 |
| CVE-2019-6188 | ThinkPad T460p and T470p BIOS Tamper Mechanism — ThinkPad T470p | 6.8 | - | 2019-11-12 |
| CVE-2019-6170 | 多款Lenovo产品输入验证错误漏洞 — ThinkPad | 6.4 | Medium | 2019-11-12 |
| CVE-2019-6172 | 多款Lenovo产品输入验证错误漏洞 — ThinkPad | 6.4 | Medium | 2019-11-12 |
| CVE-2019-6161 | ThinkAgile CP-SB BMC 安全漏洞 — ThinkAgile CP-SB | 9.1 | - | 2019-09-26 |
| CVE-2019-6175 | System Update Vulnerability — System Update | 6.2 | - | 2019-09-26 |
This page lists every published CVE security advisory associated with Lenovo. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.