MEDIUM · 6.1

CVE-2020-8334

The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized access.

Vulnerability Description

The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized access.

CVSS Score

6.1

MEDIUM

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Attack Vector
PHYSICAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
LenovoThinkpad T495S Firmware-
LenovoThinkpad T495S-
LenovoThinkpad X395 Firmware-
LenovoThinkpad X395-
LenovoThinkpad T495 Firmware-
LenovoThinkpad T495-
LenovoThinkpad A485 Firmware-
LenovoThinkpad A485-
LenovoThinkpad A285 Firmware-
LenovoThinkpad A285-
LenovoThinkpad A475 Firmware-
LenovoThinkpad A475-
LenovoThinkpad A275 Firmware-
LenovoThinkpad A275-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2020-8334?

CVE-2020-8334 is a vulnerability with a CVSS score of 6.1 (MEDIUM). The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized access.

How severe is CVE-2020-8334?

CVE-2020-8334 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-8334?

Check the references section above for vendor advisories and patch information. Affected products include: Lenovo Thinkpad T495S Firmware, Lenovo Thinkpad T495S, Lenovo Thinkpad X395 Firmware, Lenovo Thinkpad X395, Lenovo Thinkpad T495 Firmware.