Local Privilege Escalation Vulnerability in Lenovo System Update
CVE-2015-8110
7.8HIGH
What is CVE-2015-8110?
The Lenovo System Update application, previously known as ThinkVantage System Update, contains a local privilege escalation vulnerability that allows local users to gain elevated privileges. This issue arises when users interact with the 'Click here to learn more' and 'View privacy policy' options within the Tvsukernel.exe GUI application while operating under a temporary administrator account. This vulnerability could be exploited to perform unauthorized actions on the system, highlighting the need for users to update their systems to the latest version to mitigate the risk.