CVE-2023-5080 is a high-severity privilege escalation vulnerability affecting certain Lenovo tablet products, allowing local applications to access device identifiers and execute system commands. With a CVSS score of 7.8, this flaw presents a significant risk as it requires low privileges and no user interaction for a local attacker to achieve high confidentiality, integrity, and availability impacts. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 8505f_usr_s301106_2309140042_v9.56_bmp_rowCPE matchmatch criteria | cpe:2.3:o:lenovo:tab_m8_hd_tb8505f_firmware:*:*:*:*:*:*:*:* | ||
< 8505fs_usr_s301107_2309140028_v9.56_bmp_rowCPE matchmatch criteria | cpe:2.3:o:lenovo:tab_m8_hd_tb8505fs_firmware:*:*:*:*:*:*:*:* | ||
< 8505x_usr_s301129_2309141226_v9.56_bmp_rowCPE matchmatch criteria | cpe:2.3:o:lenovo:tab_m8_hd_tb8505x_firmware:*:*:*:*:*:*:*:* | ||
< 8505xs_usr_s301077_2309140036_v9.56_bmp_rowCPE matchmatch criteria | cpe:2.3:o:lenovo:tab_m8_hd_tb8505xs_firmware:*:*:*:*:*:*:*:* | ||
< tb125fu_usr_s100116_2311171525_mp1rc_rowCPE matchmatch criteria | cpe:2.3:o:lenovo:tab_m10_plus_gen_3_tb125fu_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.