CVE Vulnerabilities

CVE-2022-48183

Improper Physical Access Control

Published: Oct 09, 2023 | Modified: Nov 21, 2024
CVSS 3.x
6.8
MEDIUM
Source:
NVD
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism to not trigger under specific circumstances which could allow unauthorized access.

Weakness

The product is designed with access restricted to certain information, but it does not sufficiently protect against an unauthorized actor with physical access to these areas.

Affected Software

NameVendorStart VersionEnd Version
Thinkpad_t14s_gen_3_firmwareLenovo*1.30 (excluding)

Potential Mitigations

References