Lenovo Pc Manager vulnerabilities
14 known vulnerabilities affecting lenovo/pc_manager.
Total CVEs
14
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH9MEDIUM5
Vulnerabilities
Page 1 of 1
CVE-2026-2640MEDIUMCVSS 6.8fixed in 5.1.160.123022026-03-11
CVE-2026-2640 [MEDIUM] CWE-269 CVE-2026-2640: During an internal security assessment, a potential vulnerability was discovered in Lenovo PC Manage
During an internal security assessment, a potential vulnerability was discovered in Lenovo PC Manager that could allow a local authenticated user to terminate privileged processes.
cvelistv5nvd
CVE-2025-10495HIGHCVSS 7.7fixed in 5.1.140.92622025-11-12
CVE-2025-10495 [HIGH] CWE-295 CVE-2025-10495: A potential vulnerability was reported in the Lenovo PC Manager, Lenovo App Store, Lenovo Browser, a
A potential vulnerability was reported in the Lenovo PC Manager, Lenovo App Store, Lenovo Browser, and Lenovo Legion Zone client applications that, under certain conditions, could allow an attacker on the same logical network to execute arbitrary code.
cvelistv5nvd
CVE-2025-8486HIGHCVSS 8.5fixed in 5.1.140.92622025-10-15
CVE-2025-8486 [HIGH] CWE-250 CVE-2025-8486: A potential vulnerability was reported in PC Manager that could allow a local authenticated user to
A potential vulnerability was reported in PC Manager that could allow a local authenticated user to execute code with elevated privileges.
cvelistv5nvd
CVE-2025-10581HIGHCVSS 8.5fixed in 5.1.140.92622025-10-15
CVE-2025-10581 [HIGH] CWE-427 CVE-2025-10581: A potential DLL hijacking vulnerability was discovered in the Lenovo PC Manager during an internal s
A potential DLL hijacking vulnerability was discovered in the Lenovo PC Manager during an internal security assessment that could allow a local authenticated user to execute code with elevated privileges.
cvelistv5nvd
CVE-2025-8098HIGHCVSS 8.5fixed in 5.1.120.70412025-08-18
CVE-2025-8098 [HIGH] CWE-276 CVE-2025-8098: An improper permission vulnerability was reported in Lenovo PC Manager that could allow a local atta
An improper permission vulnerability was reported in Lenovo PC Manager that could allow a local attacker to escalate privileges.
cvelistv5nvd
CVE-2025-4657HIGHCVSS 8.4fixed in 5.1.110.50822025-07-17
CVE-2025-4657 [HIGH] CWE-122 CVE-2025-4657: A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5.1.1
A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5.1.1110.4231, used in Lenovo PC Manager, Lenovo Browser, and Lenovo App Store could allow a local attacker with elevated privileges to execute arbitrary code.
cvelistv5nvd
CVE-2025-2501HIGHCVSS 8.5fixed in 5.1.110.50822025-05-30
CVE-2025-2501 [HIGH] CWE-426 CVE-2025-2501: An untrusted search path vulnerability was reported in Lenovo PC Manager that could allow a local at
An untrusted search path vulnerability was reported in Lenovo PC Manager that could allow a local attacker to elevate privileges.
cvelistv5nvd
CVE-2025-2502HIGHCVSS 8.5fixed in 5.1.110.50822025-05-30
CVE-2025-2502 [HIGH] CWE-276 CVE-2025-2502: An improper default permissions vulnerability was reported in Lenovo PC Manager that could allow a l
An improper default permissions vulnerability was reported in Lenovo PC Manager that could allow a local attacker to elevate privileges.
cvelistv5nvd
CVE-2025-2503MEDIUMCVSS 6.9fixed in 5.1.110.50822025-05-30
CVE-2025-2503 [MEDIUM] CWE-732 CVE-2025-2503: An improper permission handling vulnerability was reported in Lenovo PC Manager that could allow a l
An improper permission handling vulnerability was reported in Lenovo PC Manager that could allow a local attacker to perform arbitrary file deletions as an elevated user.
cvelistv5nvd
CVE-2024-10254MEDIUMCVSS 4.7fixed in 5.1.90.120922025-01-14
CVE-2024-10254 [MEDIUM] CWE-122 CVE-2024-10254: A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App
A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause a system crash.
cvelistv5nvd
CVE-2024-10253MEDIUMCVSS 4.7fixed in 5.1.90.120922025-01-14
CVE-2024-10253 [MEDIUM] CWE-122 CVE-2024-10253: A potential TOCTOU vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store th
A potential TOCTOU vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause a system crash.
cvelistv5nvd
CVE-2019-6197HIGHCVSS 7.8fixed in 2.8.90.112112024-07-31
CVE-2019-6197 [HIGH] CWE-287 CVE-2019-6197: A vulnerability was reported in Lenovo PC Manager prior to version 2.8.90.11211 that could allow a l
A vulnerability was reported in Lenovo PC Manager prior to version 2.8.90.11211 that could allow a local attacker to escalate privileges.
cvelistv5nvd
CVE-2019-6198HIGHCVSS 7.8fixed in 2.8.90.112112024-07-31
CVE-2019-6198 [HIGH] CWE-287 CVE-2019-6198: A vulnerability was reported in Lenovo PC Manager prior to versionĀ 2.8.90.11211 that could allow a l
A vulnerability was reported in Lenovo PC Manager prior to version 2.8.90.11211 that could allow a local attacker to escalate privileges.
cvelistv5nvd
CVE-2017-3772MEDIUMCVSS 5.5fixed in 2.6.40.31542024-07-31
CVE-2017-3772 [MEDIUM] CWE-20 CVE-2017-3772: A vulnerability was reported in Lenovo PC Manager versions prior to 2.6.40.3154 that could allow an
A vulnerability was reported in Lenovo PC Manager versions prior to 2.6.40.3154 that could allow an attacker to cause a system reboot.
cvelistv5nvd