CVE-2024-8058: Lenovo Filez Client

High severity, CVSS 7.6. EPSS: 0.3% chance of exploitation in the next 30 days.

An improper parsing vulnerability was reported in the FileZ client that could allow a crafted file in the FileZ directory to read arbitrary files on the device due to URL preloading.

Affected products

  • Lenovo Filez Client: before 9.8.6.0 (fixed in 9.8.6.0)

Published 2024-12-16. Last modified 2026-06-17.