During an internal security assessment, a potential vulnerability was discovered in Lenovo Diagnostics and the HardwareScanAddin used in Lenovo Vantage that, during installation or when using hardware scan, could allow a local authenticated user to perform an arbitrary file write with elevated privileges.
References
| Link | Resource |
|---|---|
| https://support.lenovo.com/us/en/product_security/LEN-210693 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-04-15 13:16
Updated : 2026-08-24 17:18
NVD link : CVE-2026-0827
Mitre link : CVE-2026-0827
CVE.ORG link : CVE-2026-0827
JSON object : View
Products Affected
lenovo
- hardware_scan
- diagnostics
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
