CVE-2026-63426: High severity Lenovo Dock Manager vulnerability
During an internal security assessment, a potential vulnerability was discovered in Lenovo Dock Manager that could allow an authenticated local user to perform an arbitrary file deletion with elevated privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Lenovo Dock Managerto a version that resolves this vulnerability.Fixed in 1.6.5.3
Event History
Frequently Asked Questions
What is the severity of CVE-2026-63426?
The severity of CVE-2026-63426 is classified as high with a score of 7.1.
What types of exploits are possible with CVE-2026-63426?
CVEs with ID CVE-2026-63426 can allow authenticated local users to perform arbitrary file deletions with elevated privileges.
How can I fix CVE-2026-63426?
To fix CVE-2026-63426, ensure that you apply the latest updates and patches provided by Lenovo for the Dock Manager software.
Who is affected by CVE-2026-63426?
CVE-2026-63426 affects users of Lenovo Dock Manager who have the ability to log in as authenticated local users.
Is CVE-2026-63426 exploitable remotely?
No, CVE-2026-63426 is not exploitable remotely as it requires local authentication to exploit.