First published: Fri Mar 27 2020(Updated: )
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A directory traversal vulnerability was discovered (fixed and publicly disclosed in 2015) in Lenovo Solution Center (LSC) prior to version 3.3.002 that could allow a user to execute arbitrary code with elevated privileges.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Lenovo Solution Center | <3.3.002 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-8535 is considered a high severity vulnerability due to its potential for remote code execution.
To fix CVE-2015-8535, update Lenovo Solution Center to version 3.3.002 or later.
CVE-2015-8535 affects Lenovo Solution Center versions prior to 3.3.002.
Yes, CVE-2015-8535 can be exploited remotely, allowing an attacker to execute arbitrary code.
There are no official workarounds for CVE-2015-8535; the recommended action is to apply the patch.