SB2025081128 - Improper access control in Lenovo 510 FHD and Performance FHD web cameras
Published: August 11, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Improper access control (CVE-ID: CVE-2025-4371)
The vulnerability allows an attacker to compromise the affected device.
The vulnerability exists due to improper access restrictions. An attacker with physical access to device can write arbitrary firmware updates to the device over a USB connection.
Remediation
Install update from vendor's website.