Known vulnerabilities in Flash BIOS Update - ThinkCentre M70q Gen 5

Vendor: Lenovo
Software CPE: cpe:2.3:h:lenovo:flash_bios_update_-_thinkcentre_m70q_gen_5:*:*:*:*:*:*:*:*
Total vulnerabilities: 4
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 7.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Flash BIOS Update - ThinkCentre M70q Gen 5 Flash BIOS Update - ThinkCentre M70q Gen 5 is affected by 4 known vulnerabilities: 1 medium, 3 low Critical High Medium Low

Vulnerabilities (4)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU111030 - Out-of-bounds read
CVE-2025-2884
CWE-125 Low
No
No
M5HKT1CA 11.06.2025 SB2025061103
SB2025061303
SB2025072845
and 4 more
#VU104075 - Improper Access Control
CVE-2024-30211
CWE-284 Low
No
No
- 19.02.2025 SB2025022014
SB2025051632
SB2025052076
#VU104071 - Improper Initialization
CVE-2024-26021
CWE-665 Low
No
No
- 19.02.2025 SB2025022014
SB2025051632
SB2025052076
#VU104063 - Improper input validation
CVE-2024-38307
CWE-20 Medium
No
No
- 19.02.2025 SB2025022014
SB2025051632
SB2025052076