Lenovo Baiying vulnerabilities

5 known vulnerabilities affecting lenovo/baiying.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2026-1716MEDIUMCVSS 6.9fixed in 1.0.8.152026-03-11
CVE-2026-1716 [MEDIUM] CWE-88 CVE-2026-1716: An input validation vulnerability was reported in the DeviceSettingsSystemAddin used in Lenovo Vanta An input validation vulnerability was reported in the DeviceSettingsSystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to delete arbitrary registry keys with elevated privileges.
cvelistv5nvd
CVE-2026-1717MEDIUMCVSS 6.8fixed in 1.0.0.1382026-03-11
CVE-2026-1717 [MEDIUM] CWE-88 CVE-2026-1717: An input validation vulnerability was reported in the LenovoProductivitySystemAddin used in Lenovo V An input validation vulnerability was reported in the LenovoProductivitySystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to terminate arbitrary processes with elevated privileges.
cvelistv5nvd
CVE-2026-1715MEDIUMCVSS 6.9fixed in 1.0.8.152026-03-11
CVE-2026-1715 [MEDIUM] CWE-88 CVE-2026-1715: An input validation vulnerability was reported in the DeviceSettingsSystemAddin used in Lenovo Vanta An input validation vulnerability was reported in the DeviceSettingsSystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to modify arbitrary registry keys with elevated privileges.
cvelistv5nvd
CVE-2024-33579HIGHCVSS 7.8fixed in 2.02024-10-11
CVE-2024-33579 [HIGH] CWE-427 CVE-2024-33579: A DLL hijack vulnerability was reported in Lenovo Baiying that could allow a local attacker to execu A DLL hijack vulnerability was reported in Lenovo Baiying that could allow a local attacker to execute code with elevated privileges.
cvelistv5nvd
CVE-2022-48186HIGHCVSS 7.5fixed in 1.1.4vversions prior to 1.1.42023-05-01
CVE-2022-48186 [HIGH] CWE-295 CVE-2022-48186: A certificate validation vulnerability exists in the Baiying Android application which could lead to A certificate validation vulnerability exists in the Baiying Android application which could lead to information disclosure.
cvelistv5nvd