CVE-2025-14058

A potential missing authentication vulnerability was reported in some Lenovo Tablets that could allow an unauthorized user with physical access to modify Control Center settings if the device is locked when the "Allow Control Center access when locked" option is disabled.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Una posible vulnerabilidad de falta de autenticación fue reportada en algunas tabletas Lenovo que podría permitir a un usuario no autorizado con acceso físico modificar la configuración del Centro de control si el dispositivo está bloqueado cuando la opción 'Permitir acceso al Centro de control cuando está bloqueado' está deshabilitada.

14 Jan 2026, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-14 23:15

Updated : 2026-06-17 08:35


NVD link : CVE-2025-14058

Mitre link : CVE-2025-14058

CVE.ORG link : CVE-2025-14058


JSON object : View

Products Affected

No product.

CWE
CWE-306

Missing Authentication for Critical Function