CVE-2015-7334: High severity lenovo system update vulnerability
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnerability was reported (fixed and publicly disclosed in 2015) in Lenovo System Update version 5.07.0008 and prior where the SUService.exe /type COMMAND type could allow a user to execute arbitrary code with elevated privileges.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Lenovo System Update vulnerability?
The vulnerability ID for this Lenovo System Update vulnerability is CVE-2015-7334.
What is the severity rating of CVE-2015-7334?
CVE-2015-7334 has a severity rating of 7.8 (high).
What is the affected software version for CVE-2015-7334?
The affected software version for CVE-2015-7334 is Lenovo System Update version 5.07.0008 and prior.
How can this vulnerability be exploited?
This vulnerability can be exploited by using the SUService.exe /type COMMAND type.
Where can I find more information about CVE-2015-7334?
You can find more information about CVE-2015-7334 at https://support.lenovo.com/us/en/product_security/lsu_privilege.