6.5
MEDIUM
CVE-2019-10724
Lenovo ThinkPad/Dolby DAX2 Process Termination Privilege Escalation
Description

There is a vulnerability with the Dolby DAX2 API system services in which a low-privileged user can terminate arbitrary processes that are running at a higher privilege. The following are affected products and versions: Legion Y520T_Z370 6.0.1.8642, AIO310-20IAP 6.0.1.8642, AIO510-22ISH 6.0.1.8642, AIO510-23ISH 6.0.1.8642, AIO520-22IKL 6.0.1.8642, AIO520-22IKU 6.0.1.8642, AIO520-24IKL 6.0.1.8642, AIO520-24IKU 6.0.1.8642, AIO520-27IKL 6.0.1.8642, AIO720-24IKB 6.0.1.8642, IdeaCentre 520S-23IKU 6.0.1.8642, ThinkCentre M700z 6.0.1.8642, ThinkCentre M800z 6.0.1.8642, ThinkCentre M810z 6.0.1.8642, ThinkCentre M818z 6.0.1.8642, ThinkCentre M900Z 6.0.1.8642, ThinkCentre M910z 6.0.1.8642, V410z(YT S4250) 6.0.1.8642, 330-14IKBR Win10:6.0.1.8652, 330-15IKBR Win10:6.0.1.8652, 330-15IKBR (Brazil) Win10:6.0.1.8652, 330-15IKBR Touch Win10:6.0.1.8652, 330-17IKBR Win10:6.0.1.8652, YOGA 730-13IKB Win10:6.0.1.8644, YOGA 730-15IKB Win10:6.0.1.8644, ThinkPad L560 6.0.1.8644 and 6.0.1.8652, ThinkPad L570 6.0.1.8644 and 6.0.1.8652, ThinkPad P50 6.0.1.8642, ThinkPad P50s 6.0.1.8642, ThinkPad P51s (20Jx, 20Kx) 6.0.1.8642, ThinkPad P51s (20Hx) 6.0.1.8642, ThinkPad P52s 6.0.1.8642, ThinkPad P70 6.0.1.8642, ThinkPad T25 6.0.1.8642, ThinkPad T460s 6.0.1.8642, ThinkPad T470 6.0.1.8642, ThinkPad T470s 6.0.1.8642, ThinkPad T480 6.0.1.8642, ThinkPad T480s 6.0.1.8642, ThinkPad T560 6.0.1.8642, ThinkPad T570 6.0.1.8642, ThinkPad T580 6.0.1.8642, ThinkPad X1 Carbon 8.66.76.72 and 8.66.68.54, ThinkPad X1 Carbon 6th 6.0.1.8642, ThinkPad X1 Carbon, X1 Yoga 8.66.62.92 and 8.66.62.54, ThinkPad X1 Tablet (20Gx) 6.0.1.8642, ThinkPad X1 Tablet (20Jx) 6.0.1.8642, ThinkPad X1 Tablet Gen 3 6.0.1.8642, ThinkPad X1 Yoga (20Jx) 8.66.88.60, ThinkPad X1 Yoga 3rd 6.0.1.8642, ThinkPad X280 6.0.1.8642, ThinkPad Yoga 260, S1 8.66.62.92 and 8.66.62.54.

INFO

Published Date :

Aug. 29, 2019, 12:15 a.m.

Last Modified :

Nov. 21, 2024, 4:19 a.m.

Remotely Exploitable :

Yes !

Impact Score :

3.6

Exploitability Score :

2.8
Affected Products

The following products are affected by CVE-2019-10724 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Lenovo thinkpad_l380_firmware
2 Lenovo thinkpad_e480_firmware
3 Lenovo thinkpad_e580_firmware
4 Lenovo thinkpad_l480_firmware
5 Lenovo thinkpad_l580_firmware
6 Lenovo thinkpad_p51s_firmware
7 Lenovo thinkpad_p52s_firmware
8 Lenovo thinkpad_t25_firmware
9 Lenovo thinkpad_t470_firmware
10 Lenovo thinkpad_t470p_firmware
11 Lenovo thinkpad_t470s_firmware
12 Lenovo thinkpad_t480_firmware
13 Lenovo thinkpad_t480s_firmware
14 Lenovo thinkpad_t570_firmware
15 Lenovo thinkpad_t580_firmware
16 Lenovo thinkpad_x380_yoga_firmware
17 Lenovo thinkpad_yoga_370_firmware
18 Lenovo thinkpad_x1_carbon_firmware
19 Lenovo thinkpad_x1_tablet_firmware
20 Lenovo thinkpad_x1_yoga_firmware
21 Lenovo thinkpad_x270_firmware
22 Lenovo thinkpad_x280_firmware
23 Lenovo thinkpad_11e
24 Lenovo thinkpad_e480
25 Lenovo thinkpad_e580
26 Lenovo thinkpad_l380
27 Lenovo thinkpad_l380_yoga
28 Lenovo thinkpad_l480
29 Lenovo thinkpad_l580
30 Lenovo thinkpad_p51s
31 Lenovo thinkpad_p52s
32 Lenovo thinkpad_t25
33 Lenovo thinkpad_t470
34 Lenovo thinkpad_t470p
35 Lenovo thinkpad_t470s
36 Lenovo thinkpad_t480
37 Lenovo thinkpad_t480s
38 Lenovo thinkpad_t570
39 Lenovo thinkpad_t580
40 Lenovo thinkpad_x1_carbon
41 Lenovo thinkpad_x1_tablet
42 Lenovo thinkpad_x1_yoga
43 Lenovo thinkpad_x270
44 Lenovo thinkpad_x280
45 Lenovo thinkpad_x380_yoga
46 Lenovo thinkpad_yoga_370
47 Lenovo 100e_2nd_gen_firmware
48 Lenovo 300e_2nd_gen_firmware
49 Lenovo legion_y520t_z370_firmware
50 Lenovo aio520-22ikl_firmware
51 Lenovo aio520-22iku_firmware
52 Lenovo aio520-24ikl_firmware
53 Lenovo aio520-24iku_firmware
54 Lenovo aio520-27ikl_firmware
55 Lenovo ideacentre_520s-23iku_firmware
56 Lenovo thinkcentre_m700z_firmware
57 Lenovo thinkcentre_m800z_firmware
58 Lenovo thinkcentre_m810z_firmware
59 Lenovo thinkcentre_m818z_firmware
60 Lenovo thinkcentre_m900z_firmware
61 Lenovo thinkcentre_m910z_firmware
62 Lenovo v410z\(yt_s4250\)_firmware
63 Lenovo thinkpad_s5_firmware
64 Lenovo thinkpad_e560p_firmware
65 Lenovo thinkpad_t460_firmware
66 Lenovo thinkpad_t460p_firmware
67 Lenovo thinkpad_x260_firmware
68 Lenovo 330-14ikbr_firmware
69 Lenovo 330-15ikbr_firmware
70 Lenovo 330-15ikbr_touch_firmware
71 Lenovo 330-17ikbr_firmware
72 Lenovo 720s_touch-15ikb_firmware
73 Lenovo 720s-15ikb_firmware
74 Lenovo flex_5-1570\(r\)_firmware
75 Lenovo k43c-80_firmware
76 Lenovo v330-14ikb_firmware
77 Lenovo v330-14isk_firmware
78 Lenovo v330-15ikb_firmware
79 Lenovo v330-15isk_firmware
80 Lenovo v730-15ikb_firmware
81 Lenovo yoga_730-13ikb_firmware
82 Lenovo yoga_730-15ikb_firmware
83 Lenovo thinkpad_11e_firmware
84 Lenovo thinkpad_13_firmware
85 Lenovo thinkpad_e460_firmware
86 Lenovo thinkpad_e560_firmware
87 Lenovo thinkpad_e470_firmware
88 Lenovo thinkpad_e570_firmware
89 Lenovo thinkpad_l380_yoga_firmware
90 Lenovo thinkpad_l460_firmware
91 Lenovo thinkpad_l470_firmware
92 Lenovo thinkpad_l560_firmware
93 Lenovo thinkpad_l570_firmware
94 Lenovo thinkpad_p50_firmware
95 Lenovo thinkpad_p50s_firmware
96 Lenovo thinkpad_p70_firmware
97 Lenovo thinkpad_t460s_firmware
98 Lenovo thinkpad_t560_firmware
99 Lenovo thinkpad_s1_3rd_firmware
100 Lenovo aio310-20iap_firmware
101 Lenovo aio510-22ish_firmware
102 Lenovo aio510-23ish_firmware
103 Lenovo aio720-24ikb_firmware
104 Lenovo b330-15ikbr_firmware
105 Lenovo e43-80_firmware
106 Lenovo e53-80_firmware
107 Lenovo flex_5-1470\(r\)_firmware
108 Lenovo k42-80_firmware
109 Lenovo miix_520-12ikb_firmware
110 Lenovo miix_525-12ikb_firmware
111 Lenovo v720-14_firmware
112 Lenovo yoga_520-14ikbr_firmware
113 Lenovo yoga_720-12ikb_firmware
114 Lenovo yoga_book_c930_firmware
115 Lenovo yoga_c930-13ikb_firmware
116 Lenovo yoga_c930-13ikb_glass_firmware
117 Lenovo thinkpad_11e_yoga_firmware
118 Lenovo thinkpad_a275_firmware
119 Lenovo thinkpad_a475_firmware
120 Lenovo thinkpad_e465_firmware
121 Lenovo thinkpad_e565_firmware
122 Lenovo thinkpad_e475_firmware
123 Lenovo thinkpad_e575_firmware
124 Lenovo thinkpad_e485_firmware
125 Lenovo thinkpad_e585_firmware
126 Lenovo thinkpad_p40_firmware
127 Lenovo thinkpad_s3_yoga_14_firmware
128 Lenovo thinkpad_s3-s440_firmware
129 Lenovo thinkpad_x1_yoga_3rd_firmware
130 Lenovo thinkpad_yoga_260_firmware
131 Lenovo thinkpad_yoga_s1_firmware
132 Lenovo yoga_14_firmware
133 Lenovo thinkpad_e460
134 Lenovo thinkpad_e465
135 Lenovo thinkpad_e560
136 Lenovo thinkpad_e565
137 Lenovo thinkpad_l460
138 Lenovo thinkpad_l560
139 Lenovo thinkpad_p50
140 Lenovo thinkpad_p50s
141 Lenovo thinkpad_p70
142 Lenovo thinkpad_s3_yoga_14
143 Lenovo thinkpad_t460
144 Lenovo thinkpad_t460p
145 Lenovo thinkpad_t460s
146 Lenovo thinkpad_t560
147 Lenovo thinkpad_x260
148 Lenovo thinkcentre_m700z
149 Lenovo thinkcentre_m800z
150 Lenovo thinkcentre_m810z
151 Lenovo thinkcentre_m900z
152 Lenovo thinkpad_13
153 Lenovo legion_y520t_z370
154 Lenovo aio520-22ikl
155 Lenovo aio520-22iku
156 Lenovo aio520-24ikl
157 Lenovo aio520-24iku
158 Lenovo aio520-27ikl
159 Lenovo ideacentre_520s-23iku
160 Lenovo thinkcentre_m818z
161 Lenovo thinkcentre_m910z
162 Lenovo v410z\(yt_s4250\)
163 Lenovo thinkpad_s5
164 Lenovo thinkpad_e560p
165 Lenovo aio310-20iap
166 Lenovo aio510-22ish
167 Lenovo aio510-23ish
168 Lenovo aio720-24ikb
169 Lenovo 100e_2nd_gen
170 Lenovo 300e_2nd_gen
171 Lenovo 330-14ikbr
172 Lenovo 330-15ikbr
173 Lenovo 330-15ikbr_touch
174 Lenovo 330-17ikbr
175 Lenovo 720s_touch-15ikb
176 Lenovo 720s-15ikb
177 Lenovo b330-15ikbr
178 Lenovo e43-80
179 Lenovo e53-80
180 Lenovo flex_5-1470\(r\)
181 Lenovo flex_5-1570\(r\)
182 Lenovo k42-80
183 Lenovo k43c-80
184 Lenovo miix_520-12ikb
185 Lenovo miix_525-12ikb
186 Lenovo v330-14ikb
187 Lenovo v330-14isk
188 Lenovo v330-15ikb
189 Lenovo v330-15isk
190 Lenovo v720-14
191 Lenovo v730-15ikb
192 Lenovo yoga_520-14ikbr
193 Lenovo yoga_720-12ikb
194 Lenovo yoga_730-13ikb
195 Lenovo yoga_730-15ikb
196 Lenovo yoga_book_c930
197 Lenovo yoga_c930-13ikb
198 Lenovo yoga_c930-13ikb_glass
199 Lenovo thinkpad_11e_yoga
200 Lenovo thinkpad_a275
201 Lenovo thinkpad_a475
202 Lenovo thinkpad_e470
203 Lenovo thinkpad_e570
204 Lenovo thinkpad_e475
205 Lenovo thinkpad_e575
206 Lenovo thinkpad_e485
207 Lenovo thinkpad_e585
208 Lenovo thinkpad_l470
209 Lenovo thinkpad_l570
210 Lenovo thinkpad_p40
211 Lenovo thinkpad_s3-s440
212 Lenovo thinkpad_x1_yoga_3rd
213 Lenovo thinkpad_yoga_260
214 Lenovo thinkpad_yoga_s1
215 Lenovo thinkpad_s1_3rd
216 Lenovo yoga_14
References to Advisories, Solutions, and Tools

Here, you will find a curated list of external links that provide in-depth information, practical solutions, and valuable tools related to CVE-2019-10724.

URL Resource
https://lenovomobilesupport.lenovo.com/us/en/product_security/home Vendor Advisory
https://support.lenovo.com/us/en/solutions/LEN-26251 Vendor Advisory
https://lenovomobilesupport.lenovo.com/us/en/product_security/home Vendor Advisory
https://support.lenovo.com/us/en/solutions/LEN-26251 Vendor Advisory

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2019-10724 vulnerability anywhere in the article.

The following table lists the changes that have been made to the CVE-2019-10724 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • CVE Modified by af854a3a-2127-422b-91ae-364da2661108

    Nov. 21, 2024

    Action Type Old Value New Value
    Added Reference https://lenovomobilesupport.lenovo.com/us/en/product_security/home
    Added Reference https://support.lenovo.com/us/en/solutions/LEN-26251
  • CVE Modified by [email protected]

    May. 14, 2024

    Action Type Old Value New Value
  • CWE Remap by [email protected]

    Aug. 24, 2020

    Action Type Old Value New Value
    Changed CWE CWE-264 NVD-CWE-noinfo
  • Initial Analysis by [email protected]

    Sep. 04, 2019

    Action Type Old Value New Value
    Added CVSS V2 (AV:N/AC:L/Au:S/C:N/I:N/A:C)
    Added CVSS V3 AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
    Changed Reference Type https://lenovomobilesupport.lenovo.com/us/en/product_security/home No Types Assigned https://lenovomobilesupport.lenovo.com/us/en/product_security/home Vendor Advisory
    Changed Reference Type https://support.lenovo.com/us/en/solutions/LEN-26251 No Types Assigned https://support.lenovo.com/us/en/solutions/LEN-26251 Vendor Advisory
    Added CWE CWE-264
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:legion_y520t_z370_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:legion_y520t_z370:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:aio310-20iap_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:aio310-20iap:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:aio510-22ish_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:aio510-22ish:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:aio510-23ish_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:aio510-23ish:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:aio520-22ikl_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:aio520-22ikl:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:aio520-22iku_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:aio520-22iku:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:aio520-24ikl_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:aio520-24ikl:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:aio520-24iku_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:aio520-24iku:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:aio520-27ikl_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:aio520-27ikl:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:aio720-24ikb_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:aio720-24ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:ideacentre_520s-23iku_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:ideacentre_520s-23iku:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkcentre_m700z_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkcentre_m700z:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkcentre_m800z_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkcentre_m800z:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkcentre_m810z_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkcentre_m810z:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkcentre_m818z_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkcentre_m818z:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkcentre_m900z_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkcentre_m900z:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkcentre_m910z_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkcentre_m910z:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:v410z\(yt_s4250\)_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:v410z\(yt_s4250\):-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:100e_2nd_gen_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:100e_2nd_gen:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:300e_2nd_gen_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:300e_2nd_gen:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:330-14ikbr_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8652 OR cpe:2.3:h:lenovo:330-14ikbr:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:330-15ikbr_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8652 OR cpe:2.3:h:lenovo:330-15ikbr:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:330-15ikbr_touch_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8652 OR cpe:2.3:h:lenovo:330-15ikbr_touch:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:330-17ikbr_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8652 OR cpe:2.3:h:lenovo:330-17ikbr:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:720s_touch-15ikb_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:720s_touch-15ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:720s-15ikb_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:720s-15ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:b330-15ikbr_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:b330-15ikbr:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:e43-80_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:e43-80:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:e53-80_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:e53-80:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:flex_5-1470\(r\)_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:flex_5-1470\(r\):-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:flex_5-1570\(r\)_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:flex_5-1570\(r\):-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:k42-80_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:k42-80:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:k43c-80_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:k43c-80:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:miix_520-12ikb_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:miix_520-12ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:miix_525-12ikb_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:miix_525-12ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:v330-14ikb_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:v330-14ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:v330-14isk_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:v330-14isk:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:v330-15ikb_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:v330-15ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:v330-15isk_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:v330-15isk:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:v720-14_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:v720-14:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:v730-15ikb_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:v730-15ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:yoga_520-14ikbr_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:yoga_520-14ikbr:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:yoga_720-12ikb_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:yoga_720-12ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:yoga_730-13ikb_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8644 OR cpe:2.3:h:lenovo:yoga_730-13ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:yoga_730-15ikb_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8644 OR cpe:2.3:h:lenovo:yoga_730-15ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:yoga_book_c930_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:yoga_book_c930:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:yoga_c930-13ikb_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:yoga_c930-13ikb:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:yoga_c930-13ikb_glass_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:yoga_c930-13ikb_glass:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_11e_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_11e:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_11e_yoga_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_11e_yoga:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_13_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_13:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_a275_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_a275:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_a475_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_a475:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e460_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e460:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e560_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e560:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e465_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e465:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e565_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e565:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e470_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e470:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e570_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e570:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e475_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e475:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e575_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e575:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e480_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e480:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e580_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e580:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e485_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e485:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e585_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e585:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e570_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e570:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_s5_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_s5:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_l380_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_l380:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_l380_yoga_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_l380_yoga:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_l460_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_l460:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_l470_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_l470:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_l480_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_l480:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_l580_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_l580:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_l560_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8644 OR cpe:2.3:h:lenovo:thinkpad_l560:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_l570_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8644 OR cpe:2.3:h:lenovo:thinkpad_l570:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_p40_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_p40:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_p50_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_p50:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_p50s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_p50s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_p51s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_p51s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_p52s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_p52s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_p70_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_p70:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_s3_yoga_14_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_s3_yoga_14:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_s3-s440_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_s3-s440:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_s5_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_s5:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_e560p_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_e560p:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t25_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_t25:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t460_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_t460:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t460p_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_t460p:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t460s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_t460s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t470_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_t470:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t470p_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_t470p:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t470s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_t470s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t480_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_t480:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t480s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_t480s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t560_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_t560:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t570_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_t570:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_t580_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_t580:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_x1_carbon_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 8.66.76.72 OR cpe:2.3:h:lenovo:thinkpad_x1_carbon:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_x1_yoga_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 8.66.62.92 OR cpe:2.3:h:lenovo:thinkpad_x1_yoga:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_x1_tablet_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_x1_tablet:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_x1_yoga_3rd_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_x1_yoga_3rd:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_x260_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_x260:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_x270_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_x270:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_x280_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.1.8642 OR cpe:2.3:h:lenovo:thinkpad_x280:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_x380_yoga_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_x380_yoga:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_yoga_260_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 8.66.62.92 OR cpe:2.3:h:lenovo:thinkpad_yoga_260:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_yoga_s1_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 8.66.62.92 OR cpe:2.3:h:lenovo:thinkpad_yoga_s1:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_yoga_370_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_yoga_370:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:thinkpad_s1_3rd_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:thinkpad_s1_3rd:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lenovo:yoga_14_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lenovo:yoga_14:-:*:*:*:*:*:*:*
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.
CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2019-10724 is associated with the following CWEs:

Common Attack Pattern Enumeration and Classification (CAPEC)

Common Attack Pattern Enumeration and Classification (CAPEC) stores attack patterns, which are descriptions of the common attributes and approaches employed by adversaries to exploit the CVE-2019-10724 weaknesses.

Exploit Prediction

EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days.

0.08 }} 0.00%

score

0.33067

percentile

CVSS30 - Vulnerability Scoring System
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability