VulnerabilityModified
CVE-2017-3747
Privilege escalation vulnerability in Lenovo Nerve Center for Windows 10 on Desktop systems (Lenovo Nerve Center for notebook systems is not affected) that could allow an attacker with local privileges on a system to alter registry keys.
MEDIUM 5.5EPSS 0.29%
Does this matter?
Lower severity and a low EPSS score (0.29%). Track it; it rarely justifies an emergency change on its own.
Description
Privilege escalation vulnerability in Lenovo Nerve Center for Windows 10 on Desktop systems (Lenovo Nerve Center for notebook systems is not affected) that could allow an attacker with local privileges on a system to alter registry keys.
- CVSS 3.0
- 5.5 MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
- EPSS
- 0.29% probability · 21th percentile
- CISA KEV
- Not listed
- Affected
- lenovo/nerve center
- Source
- psirt@lenovo.com
References
- http://www.securityfocus.com/bid/99286Third Party Advisory, VDB Entry
- https://support.lenovo.com/us/en/product_security/LEN-15046Vendor Advisory
- http://www.securityfocus.com/bid/99286Third Party Advisory, VDB Entry
- https://support.lenovo.com/us/en/product_security/LEN-15046Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.