← back
CVE-2022-48183mediumCWE-1263

CVE-2022-48183

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 6.1epss 0.3%
exploitation probability
0.3%top 83% of all CVEs
observed exploitation
nono source reports it
In short

The BIOS tamper detection in certain ThinkPad models can fail to activate under specific conditions, potentially allowing someone to modify the system firmware without triggering security alerts.

Technical detail

A bypass in the BIOS tamper detection mechanism on ThinkPad T14s Gen 3 and X13 Gen 3 fails to trigger under specific circumstances, enabling unauthorized firmware modification. An attacker with physical access could exploit this to alter BIOS settings or inject malicious code while evading detection mechanisms.

Summary generated and translated by AI from the official description.
A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism to not trigger under specific circumstances which could allow unauthorized access.
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H