LenovoVariable SMI Handler Vulnerability: Arbitrary Code Execution

LenovoVariable SMI Handler Vulnerability: Arbitrary Code Execution

CVE-2021-3970 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

A potential vulnerability in LenovoVariable SMI Handler due to insufficient validation in some Lenovo Notebook models BIOS may allow an attacker with local access and elevated privileges to execute arbitrary code.

Learn more about our Cis Benchmark Audit For Apple Ios.