CVE-2017-3751 PUBLISHED CVSS 7.800000190734863 HIGH

An unquoted service path vulnerability was identified in the driver for the ThinkPad Compact USB Keyboard with TrackPoint versions earlier than 1.5.5.0. This could allow an attacker with local privileges to execute code with administrative privileges.

EPSS 0.04% · 13.5th percentile

Risk Scores

CVSS v3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.04%
13.5th percentile

Affected Products

VendorProductVersions
Lenovo Group Ltd.ThinkPad Compact USB Keyboard with TrackPoint DriverEarlier than 1.5.5.0
lenovothinkpad_compact_usb_keyboard_driver

Timeline

References

Open in Interactive Console →