CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

lenovo

thinkcentre_m90a_pro_gen_3_firmware

16 known vulnerabilities · sorted by CVSS score

CVE-2023-43570
MEDIUM6.7

A potential vulnerability was reported in the SMI callback function of the OemSmi driver that may allow a local attacker with elevated permissions to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43573
MEDIUM6.7

A buffer overflow was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43567
MEDIUM6.7

A buffer overflow was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43569
MEDIUM6.7

A buffer overflow was reported in the OemSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. 

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43576
MEDIUM6.7

A buffer overflow was reported in the WMISwSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43579
MEDIUM6.7

A buffer overflow was reported in the SmuV11Dxe driver in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43575
MEDIUM6.7

A buffer overflow was reported in the UltraFunctionTable module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43577
MEDIUM6.7

A buffer overflow was reported in the ReFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43571
MEDIUM6.7

A buffer overflow was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43578
MEDIUM6.7

A buffer overflow was reported in the SmiFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43581
MEDIUM6.7

A buffer overflow was reported in the Update_WMI module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2022-48181
MEDIUM6.7

An ErrorMessage driver stack-based buffer overflow vulnerability in BIOS of some ThinkPad models could allow an attacker with local access to elevate their privileges and execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+121
Local
Published Jun 5, 2023
CVE-2023-43580
MEDIUM6.7

A buffer overflow was reported in the SmuV11DxeVMR module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43572
MEDIUM4.4

A buffer over-read was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43574
MEDIUM4.4

A buffer over-read was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023
CVE-2023-43568
MEDIUM4.4

A buffer over-read was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.

lenovo / ideacentre_c5-14imb05_firmware+112
Local
Published Nov 8, 2023