CVE-2026-63424: High severity Lenovo Dock Manager vulnerability
During an internal security assessment, an improperly protected key was discovered in Lenovo Dock Manager that could allow a local authenticated user to escalate privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Lenovo Dock Managerto a version that resolves this vulnerability.Fixed in 1.6.5.3
Event History
Frequently Asked Questions
What is the severity of CVE-2026-63424?
The severity of CVE-2026-63424 is rated as high with a score of 7.3.
How do I fix CVE-2026-63424?
To fix CVE-2026-63424, ensure that the Lenovo Dock Manager is updated to the latest version that includes security patches.
What exploit is associated with CVE-2026-63424?
CVE-2026-63424 allows a local authenticated user to escalate privileges due to an improperly protected key in Lenovo Dock Manager.
Who is affected by CVE-2026-63424?
CVE-2026-63424 affects users of Lenovo Dock Manager with local authenticated access.
What is the primary risk of CVE-2026-63424?
The primary risk of CVE-2026-63424 is potential privilege escalation by local authenticated users.