Known vulnerabilities in ThinkPad X1 Carbon 8th Gen - 20UA - page 3

Vendor: Lenovo
Software CPE: cpe:2.3:h:lenovo:thinkpad_x1_carbon_8th_gen_-_20ua:*:*:*:*:*:*:*:*
Total vulnerabilities: 89
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting ThinkPad X1 Carbon 8th Gen - 20UA ThinkPad X1 Carbon 8th Gen - 20UA is affected by 89 known vulnerabilities: 17 medium, 72 low Critical High Medium Low

Vulnerabilities (89)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU109225 - Improper input validation
CVE-2025-20031
CWE-20 Low
No
No
- 15.05.2025 SB2025051567
SB2025051578
SB2025051950
#VU109224 - NULL Pointer Dereference
CVE-2025-20071
CWE-476 Low
No
No
- 15.05.2025 SB2025051567
SB2025051578
SB2025051950
#VU109223 - Untrusted Search Path
CVE-2025-20041
CWE-426 Low
No
No
- 15.05.2025 SB2025051567
SB2025051578
SB2025051950
#VU109219 - Untrusted Pointer Dereference
CVE-2025-20018
CWE-822 Low
No
No
- 15.05.2025 SB2025051567
SB2025051578
SB2025051950
#VU109218 - Out-of-bounds read
CVE-2025-20101
CWE-125 Low
No
No
- 15.05.2025 SB2025051567
SB2025051578
SB2025051950
#VU104136 - Improper Restriction of Communication Channel to Intended Endpoints
CVE-2024-39271
CWE-923 Low
No
No
- 21.02.2025 SB2025022135
SB2025051634
#VU104135 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-36285
CWE-362 Low
No
No
- 21.02.2025 SB2025022135
SB2025051634
#VU104134 - Stack-based buffer overflow
CVE-2024-41166
CWE-121 Low
No
No
- 21.02.2025 SB2025022135
SB2025051634
#VU104133 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-40887
CWE-362 Low
No
No
- 21.02.2025 SB2025022135
SB2025051634
#VU104132 - Improper input validation
CVE-2024-39606
CWE-20 Medium
No
No
- 21.02.2025 SB2025022135
SB2025051634
#VU104131 - NULL Pointer Dereference
CVE-2024-39356
CWE-476 Medium
No
No
- 21.02.2025 SB2025022135
SB2025051634
#VU104130 - Use After Free
CVE-2024-41168
CWE-416 Medium
No
No
- 21.02.2025 SB2025022135
SB2025051634
#VU104075 - Improper Access Control
CVE-2024-30211
CWE-284 Low
No
No
- 19.02.2025 SB2025022014
SB2025051632
SB2025052076
#VU104071 - Improper Initialization
CVE-2024-26021
CWE-665 Low
No
No
- 19.02.2025 SB2025022014
SB2025051632
SB2025052076
#VU104063 - Improper input validation
CVE-2024-38307
CWE-20 Medium
No
No
- 19.02.2025 SB2025022014
SB2025051632
SB2025052076
#VU103983 - Improper input validation
CVE-2024-42410
CWE-20 Low
No
No
- 14.02.2025 SB2025021436
SB2025051636
SB2025052080
#VU103982 - Improper Access Control
CVE-2024-38310
CWE-284 Low
No
No
- 14.02.2025 SB2025021436
SB2025051636
SB2025052080
#VU103981 - Improper Access Control
CVE-2024-37355
CWE-284 Low
No
No
- 14.02.2025 SB2025021436
SB2025051636
SB2025052080
#VU103954 - Stack-based buffer overflow
CVE-2024-39779
CWE-121 Low
No
No
- 13.02.2025 SB2025021314
SB2025051633
#VU103953 - Improper Access Control
CVE-2024-39797
CWE-284 Low
No
No
- 13.02.2025 SB2025021314
SB2025051633


Showing elements 41 - 60 out of 89