CVE-2026-2640: Medium severity Lenovo PC Manager vulnerability
Published Mar 11, 2026
·Updated
During an internal security assessment, a potential vulnerability was discovered in Lenovo PC Manager that could allow a local authenticated user to terminate privileged processes.
Affected Software
1 affected component
Lenovo PC Manager
Remediation
Information
Update Lenovo PC Manager Version to version 5.1.160.12302 or later.
Event History
Mar 11, 2026
CVE Published
via MITRE·08:23 PM
Data Sourced
via MITRE·08:23 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-2640?
CVE-2026-2640 has a medium severity rating due to its potential to allow local authenticated users to terminate privileged processes.
2
How do I fix CVE-2026-2640?
To address CVE-2026-2640, users should update Lenovo PC Manager to the latest version as recommended by Lenovo.
3
Who is affected by CVE-2026-2640?
CVE-2026-2640 affects local authenticated users of Lenovo PC Manager.
4
What types of issues can CVE-2026-2640 cause?
CVE-2026-2640 can potentially disrupt system processes by allowing termination of privileged processes.
5
When was CVE-2026-2640 discovered?
CVE-2026-2640 was discovered during an internal security assessment of Lenovo PC Manager.