An arbitrary file upload vulnerability was reported in the Lenovo Scanner Pro client during an internal security assessment that could allow remote code execution or unauthorized control of the affected system.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://iknow.lenovo.com.cn/detail/434326 |
|
History
Thu, 13 Nov 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Lenovo
Lenovo scanner Pro |
|
| Vendors & Products |
Lenovo
Lenovo scanner Pro |
Wed, 12 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 12 Nov 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An arbitrary file upload vulnerability was reported in the Lenovo Scanner Pro client during an internal security assessment that could allow remote code execution or unauthorized control of the affected system. | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2025-11-12T21:03:22.396Z
Reserved: 2025-10-21T20:07:42.113Z
Link: CVE-2025-12048
Updated: 2025-11-12T20:37:12.256Z
Status : Awaiting Analysis
Published: 2025-11-12T20:15:37.860
Modified: 2025-11-14T16:42:30.503
Link: CVE-2025-12048
No data.