Vulnerability Database

289,871

Total vulnerabilities in the database

CVE-2015-2233

Lenovo System Update (formerly ThinkVantage System Update) before 5.06.0034 does not properly validate CA chains during signature validation, which allows man-in-the-middle attackers to upload and execute arbitrary files via a crafted certificate.

  • Published: May 12, 2015
  • Updated: Apr 13, 2023
  • CVE: CVE-2015-2233
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 8.3
  • AV:A/AC:L/Au:N/C:C/I:C/A:C

CWEs: