cvedb.io
CVE-2015-8110
HIGH · CVSS 7.8
EPSS exploitation probability: 0%
Published 2017-04-24T06:59:00.540 · Last modified 2026-06-17T00:34:03.847

Summary

Lenovo System Update (formerly ThinkVantage System Update) before 5.07.0019 allows local users to gain privileges by navigating to (1) "Click here to learn more" or (2) "View privacy policy" within the Tvsukernel.exe GUI application in the context of a temporary administrator account, aka a "local privilege escalation vulnerability."

Affected products

lenovo — lenovo_system_update

Does this affect you?

Add your gear to cvedb and we'll alert you only when lenovo ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.