Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
6.9

Lenovo Vantage and Lenovo Baiying allow unauthorized registry modifications

CVE-2026-1715
Summary

A security issue affects Lenovo Vantage and Lenovo Baiying, allowing a local user with permission to make unauthorized changes to system settings. This could lead to unpredictable behavior or system compromise. Update your software to fix the issue.

Original title
An input validation vulnerability was reported in the DeviceSettingsSystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to modify arbitrary registry ke...
Original description
An input validation vulnerability was reported in the DeviceSettingsSystemAddin used in Lenovo Vantage and Lenovo Baiying that could allow a local authenticated user to modify arbitrary registry keys with elevated privileges.
nvd CVSS3.1 7.1
nvd CVSS4.0 6.9
Vulnerability type
CWE-88
Published: 11 Mar 2026 · Updated: 13 Mar 2026 · First seen: 11 Mar 2026