CVE-2026-63424CWE-261

CVE-2026-63424

High · published August 13, 2026

CVSS v3.1
7.3
EPSS
0%
Percentile
0.8
In the wild
Unconfirmed
What it is

During an internal security assessment, an improperly protected key was discovered in Lenovo Dock Manager that could allow a local authenticated user to escalate privileges.

The record
Technical detail
CVSS v3.1
7.3 · HIGH
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00097 · 0.8th percentile
Weakness
CWE-261 · Weak Encoding for Password
Published
2026-08-13T19:19Z
References (2)
EPSS history
Timeline
  • 13 AUG 14:52Z
    During an internal security assessment, an improperly protected key was discovered in Lenovo Dock Manager that could allow a local authenticated user to…
    cvelistv5