CVE-2020-8337 Vulnerability Details
/
/
/
CVE-2020-8337 Metadata Quick Info
CVE Published: 09/06/2020 |
CVE Updated: 16/09/2024 |
CVE Year: 2020
Source: lenovo |
Vendor: Lenovo |
Product: Synaptics Smart Audio UWP App
Status : PUBLISHED
CVE-2020-8337 Description
An unquoted search path vulnerability was reported in versions prior to 1.0.83.0 of the Synaptics Smart Audio UWP app associated with the DCHU audio drivers on Lenovo platforms that could allow an administrative user to execute arbitrary code.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID: CWE-428
CWE Name: CWE-428 Unquoted Search Path or Element
Source: Lenovo
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).