CVE-2015-8109: Lenovo System Update
High severity, CVSS 7.0. EPSS: 0.4% chance of exploitation in the next 30 days.
Lenovo System Update (formerly ThinkVantage System Update) before 5.07.0019 allows local users to gain privileges by making a prediction of tvsu_tmp_xxxxxXXXXX account credentials that requires knowledge of the time that this account was created, aka a "temporary administrator account vulnerability."
Affected products
- Lenovo Lenovo System Update: up to and including 5.07.0013
Published 2017-04-24. Last modified 2026-06-17.