CVE-2026-6511: Medium severity Lenovo Lenovo Smart Connect for Windows vulnerability
During an internal security assessment, a potential improper access control vulnerability was discovered in Lenovo Smart Connect for Windows that could allow a local authenticated user to access files owned by a different user on the same system.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Lenovo Smart Connect for Windowsto a version that resolves this vulnerability.Fixed in 09.0.2.003.000
Event History
Frequently Asked Questions
What is the severity of CVE-2026-6511?
The severity of CVE-2026-6511 is medium with a score of 5.5.
How do I fix CVE-2026-6511?
To fix CVE-2026-6511, ensure that you apply the latest security updates provided by Lenovo for Smart Connect.
What kind of vulnerability is CVE-2026-6511?
CVE-2026-6511 is an improper access control vulnerability that may allow local authenticated users to access unauthorized files.
Who is impacted by CVE-2026-6511?
CVE-2026-6511 affects users of Lenovo Smart Connect for Windows on systems with local authenticated access.
What are the potential risks associated with CVE-2026-6511?
The potential risks of CVE-2026-6511 include unauthorized data access by local users, leading to privacy breaches.