CVE-2020-8353
Summary
| CVE | CVE-2020-8353 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-11-11 18:15:00 UTC |
| Updated | 2020-11-30 14:33:00 UTC |
| Description | Prior to August 10, 2020, some Lenovo Desktop and Workstation systems were shipped with the Embedded Host Based Configuration (EHBC) feature of Intel AMT enabled. This could allow an administrative user with local access to configure Intel AMT. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Lenovo | Thinkcentre M80s | - | All | All | All |
| Hardware | Lenovo | Thinkcentre M80s | - | All | All | All |
| Operating System | Lenovo | Thinkcentre M80s Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkcentre M80s Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkcentre M80t | - | All | All | All |
| Hardware | Lenovo | Thinkcentre M80t | - | All | All | All |
| Operating System | Lenovo | Thinkcentre M80t Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkcentre M80t Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkcentre M90s | - | All | All | All |
| Hardware | Lenovo | Thinkcentre M90s | - | All | All | All |
| Operating System | Lenovo | Thinkcentre M90s Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkcentre M90s Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkcentre M90t | - | All | All | All |
| Hardware | Lenovo | Thinkcentre M90t | - | All | All | All |
| Operating System | Lenovo | Thinkcentre M90t Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkcentre M90t Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkcentre M910z | - | All | All | All |
| Hardware | Lenovo | Thinkcentre M910z | - | All | All | All |
| Operating System | Lenovo | Thinkcentre M910z Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkcentre M910z Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkcentre M920q | - | All | All | All |
| Hardware | Lenovo | Thinkcentre M920q | - | All | All | All |
| Operating System | Lenovo | Thinkcentre M920q Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkcentre M920q Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkcentre M920s | - | All | All | All |
| Hardware | Lenovo | Thinkcentre M920s | - | All | All | All |
| Operating System | Lenovo | Thinkcentre M920s Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkcentre M920s Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkcentre M920t | - | All | All | All |
| Hardware | Lenovo | Thinkcentre M920t | - | All | All | All |
| Operating System | Lenovo | Thinkcentre M920t Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkcentre M920t Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkcentre M920z | - | All | All | All |
| Hardware | Lenovo | Thinkcentre M920z | - | All | All | All |
| Operating System | Lenovo | Thinkcentre M920z Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkcentre M920z Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkstation P330s | - | All | All | All |
| Hardware | Lenovo | Thinkstation P330s | - | All | All | All |
| Operating System | Lenovo | Thinkstation P330s Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkstation P330s Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkstation P330t | - | All | All | All |
| Hardware | Lenovo | Thinkstation P330t | - | All | All | All |
| Operating System | Lenovo | Thinkstation P330t Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkstation P330t Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkstation P330 Tiny | - | All | All | All |
| Hardware | Lenovo | Thinkstation P330 Tiny | - | All | All | All |
| Operating System | Lenovo | Thinkstation P330 Tiny Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkstation P330 Tiny Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkstation P340s | - | All | All | All |
| Hardware | Lenovo | Thinkstation P340s | - | All | All | All |
| Operating System | Lenovo | Thinkstation P340s Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkstation P340s Firmware | All | All | All | All |
| Hardware | Lenovo | Thinkstation P340t | - | All | All | All |
| Hardware | Lenovo | Thinkstation P340t | - | All | All | All |
| Operating System | Lenovo | Thinkstation P340t Firmware | All | All | All | All |
| Operating System | Lenovo | Thinkstation P340t Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Embedded Host Based Configuration (EHBC) feature of Intel AMT Enabled - Lenovo Support US | MISC | support.lenovo.com | Exploit, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.