MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnerability was reported (fixed and publicly disclosed in 2015) in Lenovo System Update version 5.07.0008 and prior where the SUService.exe /type INF and INF_BY_COMPATIBLE_ID command types could allow a user to execute arbitrary code with elevated privileges.
References
Link | Resource |
---|---|
https://support.lenovo.com/us/en/product_security/lsu_privilege | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-03-27T14:05:01
Updated: 2020-03-27T14:05:01
Reserved: 2015-09-23T00:00:00
Link: CVE-2015-7333
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-03-27T15:15:11.553
Modified: 2020-03-30T18:29:27.880
Link: CVE-2015-7333
JSON object: View
Redhat Information
No data.
CWE