Browse all 359 CVE security advisories affecting Lenovo. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Lenovo operates as a global technology manufacturer, primarily producing personal computers, servers, and mobile devices for enterprise and consumer markets. Its software ecosystem, including pre-installed utilities and firmware, has historically exhibited vulnerabilities such as remote code execution, cross-site scripting, and privilege escalation flaws within management interfaces. These weaknesses often stem from complex supply chain integrations and legacy codebases embedded in hardware. While the company maintains standard security protocols, past incidents have highlighted risks associated with third-party components and default configurations in diagnostic tools. The current record of 359 Common Vulnerabilities and Exposures reflects the broad attack surface inherent in its diverse hardware portfolio. Continuous patching and rigorous code audits remain critical for mitigating these persistent threats across its extensive product line.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2023-4891 | Lenovo ThinkPad 资源管理错误漏洞 — Lenovo View DriverCWE-416 | 5.5 | Medium | 2023-11-08 |
| CVE-2023-4706 | Lenovo PC 安全漏洞 — 1Lenovo Preload DirectoryCWE-276 | 7.3 | High | 2023-11-08 |
| CVE-2023-4632 | Lenovo System Update 代码问题漏洞 — Lenovo System UpdateCWE-427 | 7.8 | High | 2023-11-08 |
| CVE-2022-4575 | Lenovo ThinkPad 安全漏洞 — ThinkPad BIOSCWE-276 | 6.7 | Medium | 2023-10-30 |
| CVE-2022-48189 | Lenovo ThinkPad 输入验证错误漏洞 — ThinkPad BIOSCWE-20 | 6.7 | Medium | 2023-10-30 |
| CVE-2022-4574 | Lenovo ThinkPad 输入验证错误漏洞 — ThinkPad BIOSCWE-20 | 6.7 | Medium | 2023-10-30 |
| CVE-2022-4573 | Lenovo ThinkPad 输入验证错误漏洞 — ThinkPad X1 Fold Gen 1CWE-20 | 6.7 | Medium | 2023-10-30 |
| CVE-2022-3702 | Lenovo Vantage 安全漏洞 — Vantage HardwareScan PluginCWE-367 | 6.1 | Medium | 2023-10-27 |
| CVE-2022-3701 | Lenovo Vantage 安全漏洞 — Vantage SystemUpdate PluginCWE-367 | 7.8 | High | 2023-10-27 |
| CVE-2022-3700 | Lenovo Vantage 安全漏洞 — Vantage SystemUpdate PluginCWE-367 | 6.1 | Medium | 2023-10-27 |
| CVE-2022-3611 | Lenovo App Store 信息泄露漏洞 — App StoreCWE-200 | 7.6 | High | 2023-10-27 |
| CVE-2022-3429 | Lenovo printers 输入验证错误漏洞 — Printer GM265DN (production date June 2022 and before)CWE-20 | 6.5 | Medium | 2023-10-27 |
| CVE-2022-34887 | Lenovo printers 授权问题漏洞 — Printer GM265DN (production date June 2022 and before)CWE-287 | 4.3 | Medium | 2023-10-27 |
| CVE-2022-34886 | Lenovo printers 安全漏洞 — Printer GM265DN (production date June 2022 and before)CWE-120 | 8.8 | High | 2023-10-27 |
| CVE-2022-3699 | Lenovo Diagnostics 缓冲区错误漏洞 — HardwareScanPlugin CWE-787 | 7.8 | High | 2023-10-24 |
| CVE-2022-3698 | Lenovo Diagnostics 资源管理错误漏洞 — HardwareScanPlugin CWE-400 | 4.4 | Medium | 2023-10-24 |
| CVE-2022-0353 | Lenovo Vantage 资源管理错误漏洞 — HardwareScanPlugin CWE-400 | 4.4 | Medium | 2023-10-24 |
| CVE-2023-3112 | Lenovo ThinkPad T14 Gen 3 安全漏洞 — Elliptic Labs Virtual Lock SensorCWE-276 | 7.8 | High | 2023-10-24 |
| CVE-2023-4608 | Lenovo XClarity Controller SQL注入漏洞 — Lenovo XClarity Controller (XCC)CWE-89 | 4.1 | Medium | 2023-10-24 |
| CVE-2023-4607 | Lenovo XClarity Controller 安全漏洞 — Lenovo XClarity Controller (XCC)CWE-269 | 7.5 | High | 2023-10-24 |
| CVE-2023-4606 | Lenovo XClarity Controller 安全漏洞 — Lenovo XClarity Controller (XCC)CWE-862 | 8.1 | High | 2023-10-24 |
| CVE-2022-48183 | Lenovo ThinkPad 安全漏洞 — ThinkPad T14s X13 Gen3 BIOS - WindowsCWE-1263 | 6.1 | Medium | 2023-10-09 |
| CVE-2022-48182 | Lenovo ThinkPad 安全漏洞 — ThinkPad T14s X13 Gen3 BIOS - WindowsCWE-1263 | 6.1 | Medium | 2023-10-09 |
| CVE-2022-3728 | Lenovo ThinkPad 安全漏洞 — ThinkPad T14s Gen 3 BIOSCWE-1263 | 6.1 | Medium | 2023-10-09 |
| CVE-2022-3431 | Lenovo Notebook 安全漏洞 — BIOSCWE-276 | 6.7 | Medium | 2023-10-09 |
| CVE-2022-3746 | Lenovo Notebook 访问控制错误漏洞 — NotebookCWE-284 | 6.7 | Medium | 2023-08-23 |
| CVE-2022-3745 | Lenovo Notebook 信息泄露漏洞 — NotebookCWE-200 | 4.4 | Medium | 2023-08-23 |
| CVE-2022-3744 | Lenovo Notebook 信任管理问题漏洞 — NotebookCWE-798 | 6.7 | Medium | 2023-08-23 |
| CVE-2022-3743 | Lenovo Notebook 信息泄露漏洞 — NotebookCWE-200 | 4.4 | Medium | 2023-08-23 |
| CVE-2022-3742 | Lenovo notebook 安全漏洞 — NotebookCWE-120 | 6.7 | Medium | 2023-08-23 |
This page lists every published CVE security advisory associated with Lenovo. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.