CVE-2021-3519

Summary

CVECVE-2021-3519
StatePUBLIC
Assigner[email protected]
Source PriorityCVE Program / NVD first with legacy fallback
Published2021-11-12 22:15:00 UTC
Updated2021-11-19 22:04:00 UTC
DescriptionA vulnerability was reported in some Lenovo Desktop models that could allow unauthorized access to the boot menu, when the "BIOS Password At Boot Device List" BIOS setting is Yes.

Risk And Classification

Problem Types: CWE-287

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Hardware Lenovo Ideacentre 3-07imb05 - All All All
Operating System Lenovo Ideacentre 3-07imb05 Firmware All All All All
Hardware Lenovo Ideacentre 310s-08igm - All All All
Operating System Lenovo Ideacentre 310s-08igm Firmware All All All All
Hardware Lenovo Ideacentre 5-14imb05 - All All All
Operating System Lenovo Ideacentre 5-14imb05 Firmware All All All All
Hardware Lenovo Ideacentre 5-14iob6 - All All All
Operating System Lenovo Ideacentre 5-14iob6 Firmware All All All All
Hardware Lenovo Ideacentre 510a-15arr - All All All
Operating System Lenovo Ideacentre 510a-15arr Firmware All All All All
Hardware Lenovo Ideacentre 510s-07icb - All All All
Operating System Lenovo Ideacentre 510s-07icb Firmware All All All All
Hardware Lenovo Ideacentre 510s-07ick - All All All
Operating System Lenovo Ideacentre 510s-07ick Firmware All All All All
Hardware Lenovo Ideacentre C5-14mb05 - All All All
Operating System Lenovo Ideacentre C5-14mb05 Firmware All All All All
Hardware Lenovo Ideacentre Creator 5-14iob6 - All All All
Operating System Lenovo Ideacentre Creator 5-14iob6 Firmware All All All All
Hardware Lenovo Ideacentre G5-14imb05 - All All All
Operating System Lenovo Ideacentre G5-14imb05 Firmware All All All All
Hardware Lenovo Ideacentre Gaming 5-14iob6 - All All All
Operating System Lenovo Ideacentre Gaming 5-14iob6 Firmware All All All All
Hardware Lenovo Thinkcentre E75 T/s - All All All
Operating System Lenovo Thinkcentre E75 T/s Firmware All All All All
Hardware Lenovo Thinkcentre M60e Tiny - All All All
Operating System Lenovo Thinkcentre M60e Tiny Firmware All All All All
Hardware Lenovo Thinkcentre M630e - All All All
Operating System Lenovo Thinkcentre M630e Firmware All All All All
Hardware Lenovo Thinkcentre M70a - All All All
Operating System Lenovo Thinkcentre M70a Firmware All All All All
Hardware Lenovo Thinkcentre M70a Gen 2 - All All All
Operating System Lenovo Thinkcentre M70a Gen 2 Firmware All All All All
Hardware Lenovo Thinkcentre M70c - All All All
Operating System Lenovo Thinkcentre M70c Firmware All All All All
Hardware Lenovo Thinkcentre M70q - All All All
Operating System Lenovo Thinkcentre M70q Firmware All All All All
Hardware Lenovo Thinkcentre M70s - All All All
Operating System Lenovo Thinkcentre M70s Firmware All All All All
Hardware Lenovo Thinkcentre M70t - All All All
Operating System Lenovo Thinkcentre M70t Firmware All All All All
Hardware Lenovo Thinkcentre M710e - All All All
Operating System Lenovo Thinkcentre M710e Firmware All All All All
Hardware Lenovo Thinkcentre M710s - All All All
Operating System Lenovo Thinkcentre M710s Firmware All All All All
Hardware Lenovo Thinkcentre M710t - All All All
Operating System Lenovo Thinkcentre M710t Firmware All All All All
Hardware Lenovo Thinkcentre M720e - All All All
Operating System Lenovo Thinkcentre M720e Firmware All All All All
Hardware Lenovo Thinkcentre M75n - All All All
Operating System Lenovo Thinkcentre M75n Firmware All All All All
Hardware Lenovo Thinkcentre M75s Gen 2 - All All All
Operating System Lenovo Thinkcentre M75s Gen 2 Firmware All All All All
Operating System Lenovo Thinkcentre M75s Gen 2 Firmware All All All All
Hardware Lenovo Thinkcentre M75t Gen 2 - All All All
Operating System Lenovo Thinkcentre M75t Gen 2 Firmware All All All All
Operating System Lenovo Thinkcentre M75t Gen 2 Firmware All All All All
Hardware Lenovo Thinkcentre M80q - All All All
Operating System Lenovo Thinkcentre M80q Firmware All All All All
Hardware Lenovo Thinkcentre M80s - All All All
Operating System Lenovo Thinkcentre M80s Firmware All All All All
Hardware Lenovo Thinkcentre M80t - All All All
Operating System Lenovo Thinkcentre M80t Firmware All All All All
Hardware Lenovo Thinkcentre M810z - All All All
Operating System Lenovo Thinkcentre M810z Firmware All All All All
Hardware Lenovo Thinkcentre M820z - All All All
Operating System Lenovo Thinkcentre M820z Firmware All All All All
Hardware Lenovo Thinkcentre M90a - All All All
Operating System Lenovo Thinkcentre M90a Firmware All All All All
Hardware Lenovo Thinkcentre M90a Tiny - All All All
Operating System Lenovo Thinkcentre M90q Tiny Firmware All All All All
Hardware Lenovo Thinkcentre M90s - All All All
Operating System Lenovo Thinkcentre M90s Firmware All All All All
Hardware Lenovo Thinkcentre M90t - All All All
Operating System Lenovo Thinkcentre M90t Firmware All All All All
Hardware Lenovo Thinkcentre Qt B415 - All All All
Operating System Lenovo Thinkcentre Qt B415 Firmware All All All All
Hardware Lenovo Thinkcentre Qt M410 - All All All
Operating System Lenovo Thinkcentre Qt M410 Firmware All All All All
Hardware Lenovo Thinkcentre Qt M415 - All All All
Operating System Lenovo Thinkcentre Qt M415 Firmware All All All All
Hardware Lenovo Thinkstation P340 - All All All
Operating System Lenovo Thinkstation P340 Firmware All All All All
Hardware Lenovo Thinkstation P340 Tiny - All All All
Operating System Lenovo Thinkstation P340 Tiny Firmware All All All All
Hardware Lenovo Thinkstation P520 - All All All
Hardware Lenovo Thinkstation P520c - All All All
Operating System Lenovo Thinkstation P520c Firmware All All All All
Operating System Lenovo Thinkstation P520 Firmware All All All All
Hardware Lenovo Thinkstation P720 - All All All
Operating System Lenovo Thinkstation P720 Firmware All All All All
Hardware Lenovo Thinkstation P920 - All All All
Operating System Lenovo Thinkstation P920 Firmware All All All All
Hardware Lenovo V30a-22iml - All All All
Operating System Lenovo V30a-22iml Firmware All All All All
Hardware Lenovo V330 - All All All
Operating System Lenovo V330 Firmware All All All All
Hardware Lenovo V50a-22imb - All All All
Operating System Lenovo V50a-22imb Firmware All All All All
Hardware Lenovo V50a-24imb - All All All
Operating System Lenovo V50a-24imb Firmware All All All All
Hardware Lenovo V50s-07imb - All All All
Operating System Lenovo V50s-07imb Firmware All All All All
Hardware Lenovo V50t-13imb - All All All
Operating System Lenovo V50t-13imb Firmware All All All All
Hardware Lenovo V50t-13imb G2 - All All All
Operating System Lenovo V50t-13imb G2 Firmware All All All All
Hardware Lenovo V520 - All All All
Hardware Lenovo V520s - All All All
Operating System Lenovo V520s Firmware All All All All
Operating System Lenovo V520 Firmware All All All All
Hardware Lenovo V530-15arr - All All All
Operating System Lenovo V530-15arr Firmware All All All All
Hardware Lenovo V530-15icr - All All All
Operating System Lenovo V530-15icr Firmware All All All All
Hardware Lenovo V530s-07icb - All All All
Operating System Lenovo V530s-07icb Firmware All All All All
Hardware Lenovo V530s-07icr - All All All
Operating System Lenovo V530s-07icr Firmware All All All All
Hardware Lenovo V55t-15api - All All All
Operating System Lenovo V55t-15api Firmware All All All All
Operating System Microsoft Windows 10 - All All All

References

ReferenceSourceLinkTags
Multi-vendor BIOS Security Vulnerabilities (September 2021) - Lenovo Support DE CONFIRM support.lenovo.com
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

Vendor Comments And Credit

Discovery Credit

LEGACY: Lenovo thanks Pawel Urbanek for reporting this issue.

© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report