Back

HIGH

During an internal security assessment, a potential vulnerability was discovered in Lenovo Software Fix that could allow a local authenticated user to perform arbitrary code execution with elevated privileges

Published Apr 15, 2026

Description

During an internal security assessment, a potential vulnerability was discovered in Lenovo Software Fix that could allow a local authenticated user to perform arbitrary code execution with elevated privileges.

Affected products

Remediation

Vendor solution

Update Lenovo Software Fix to version 7.5.5.19 or later.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner lenovo
Published Apr 15, 2026
Updated Apr 15, 2026
Reserved Mar 13, 2026
CISA Vulnrichment
Updated Apr 15, 2026
NVD
Status Analyzed
Modified Aug 24, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner lenovo
Published Apr 15, 2026
Updated Apr 15, 2026
Exploited since n/a
EUVD-2026-22928