CVE-2023-5078
A vulnerability was reported in some ThinkPad BIOS that could allow a physical or local attacker with elevated privileges to tamper with BIOS firmware.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 6.7
- CVSS vector
- CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
- EPSS probability
- 0.04%
- CWE
- CWE-1419
- Published
- 2023-11-08
- Last modified
- 2026-03-13
Affected products
- Lenovo ThinkPad BIOS
Weakness type
Related vulnerabilities
- CVE-2026-33773 — Junos OS: EX Series, QFX Series: If the same egress filter is configured on both an IRB and a physical interface one of those is not applied
- CVE-2026-21913 — Junos OS: EX4000: A high volume of traffic destined to the device leads to a crash and restart
- CVE-2025-53800 — Windows Graphics Component Elevation of Privilege Vulnerability
- CVE-2025-24495 — Incorrect initialization of resource in the branch prediction unit for some Intel(R) Core™ Ultra...
- CVE-2024-57375 — Andamiro Pump It Up 20th Anniversary (aka Double X or XX/2019) 1.00.0-2.08.3 allows a physically...
- CVE-2024-0103 — CVE
- CVE-2023-45085 — When compute hosts are disabled and reenabled, they immediately transition to "ON", not "INIT"