CVE-2025-2501

An untrusted search path vulnerability was reported in Lenovo PC Manager that could allow a local attacker to elevate privileges.
References
Link Resource
https://iknow.lenovo.com.cn/detail/428586 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:lenovo:pcmanager:*:*:*:*:*:*:*:*

History

02 Feb 2026, 15:29

Type Values Removed Values Added
Summary
  • (es) Se informó de una vulnerabilidad de ruta de búsqueda no confiable en Lenovo PC Manager que podría permitir que un atacante local eleve privilegios.
First Time Lenovo
Lenovo pcmanager
References () https://iknow.lenovo.com.cn/detail/428586 - () https://iknow.lenovo.com.cn/detail/428586 - Vendor Advisory
CPE cpe:2.3:a:lenovo:pcmanager:*:*:*:*:*:*:*:*

30 May 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-30 20:15

Updated : 2026-02-02 15:29


NVD link : CVE-2025-2501

Mitre link : CVE-2025-2501

CVE.ORG link : CVE-2025-2501


JSON object : View

Products Affected

lenovo

  • pcmanager
CWE
CWE-426

Untrusted Search Path