THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-0827 (HIGH 7.1) — During an internal security assessment, a potential vulnerability was discovered in Lenovo Diagnostics and the HardwareScanAddin used in Lenovo Vantage that, during installation or when using hardware scan, could allow a local authenticated user to perform an arbitrary file write

[NVD] CVE-2026-0827 (HIGH 7.1) — During an internal security assessment, a potential vulnerability was discovered in Lenovo Diagnostics and the HardwareScanAddin used in Lenovo Vantage that, during installation or when using hardware scan, could allow a local authenticated user to perform an arbitrary file write

lownvdPublished 2026-04-15

CVE-2026-0827 CVSS: 7.1 HIGH Published: 2026-04-15T13:16:23.097

During an internal security assessment, a potential vulnerability was discovered in Lenovo Diagnostics and the HardwareScanAddin used in Lenovo Vantage that, during installation or when using hardware scan, could allow a local authenticated user to perform an arbitrary file write with elevated privileges.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-0827