vendor:
ThinkPad Series
by:
Cr4sh
9,8
CVSS
HIGH
System Management Mode arbitrary code execution
N/A
CWE
Product Name: ThinkPad Series
Affected Version From: X220
Affected Version To: T450s
Patch Exists: YES
Related CWE: N/A
CPE: o:lenovo:thinkpad_series
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux, Mac
2016
Lenovo ThinkPad System Management Mode arbitrary code execution exploit
This code exploits a 0day privilege escalation vulnerability (or backdoor?) in SystemSmmRuntimeRt UEFI driver (GUID is 7C79AC8C-5E6C-4E3D-BA6F-C260EE7C172E) of Lenovo firmware. Running of arbitrary System Management Mode code allows attacker to disable flash write protection and infect platform firmware, disable Secure Boot, bypass Virtual Secure Mode (Credential Guard, etc.) on Windows 10 Enterprise and do others evil things.
Mitigation:
Update the firmware to the latest version.