HackerFeeds
All CVEs

CVE-2026-18058

HIGH7.5

Published 2026-09-02 · Updated 2026-09-09 · Source psirt@lenovo.com

Description

The mobile Smart Connect dashboard UI was subject to manipulation by 3rd party apps. When paired with a phishing attack, this manipulation could result in escalated privileges of an attacker within the system.

CVSS vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H

CWE-862
View on NVD