CVE-2023-3112

A vulnerability was reported in Elliptic Labs Virtual Lock Sensor for ThinkPad T14 Gen 3 that could allow an attacker with local access to execute code with elevated privileges.
References
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ellipticlabs:ai_virtual_presence_sensor:*:*:*:*:*:*:*:*
cpe:2.3:a:ellipticlabs:virtual_lock_sensor:*:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkpad_t14_gen_3:-:*:*:*:*:*:*:*

History

31 Oct 2023, 18:33

Type Values Removed Values Added
References (MISC) https://support.lenovo.com/us/en/product_security/LEN-128081 - (MISC) https://support.lenovo.com/us/en/product_security/LEN-128081 - Vendor Advisory
CPE cpe:2.3:a:ellipticlabs:ai_virtual_presence_sensor:*:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkpad_t14_gen_3:-:*:*:*:*:*:*:*
cpe:2.3:a:ellipticlabs:virtual_lock_sensor:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
First Time Ellipticlabs virtual Lock Sensor
Lenovo
Lenovo thinkpad T14 Gen 3
Ellipticlabs
Ellipticlabs ai Virtual Presence Sensor

25 Oct 2023, 18:17

Type Values Removed Values Added
New CVE

Information

Published : 2023-10-25 18:17

Updated : 2023-12-10 15:14


NVD link : CVE-2023-3112

Mitre link : CVE-2023-3112

CVE.ORG link : CVE-2023-3112


JSON object : View

Products Affected

lenovo

  • thinkpad_t14_gen_3

ellipticlabs

  • ai_virtual_presence_sensor
  • virtual_lock_sensor
CWE
CWE-276

Incorrect Default Permissions