What is CVE-2026-63425?
CVE-2026-63425 is an improper permissions vulnerability discovered in Lenovo Dock Manager during an internal assessment. This flaw could allow a local authenticated user to execute arbitrary code with elevated privileges. It is recommended to follow Lenovo product updates.
Azərbaycanca: CVE-2026-63425, Lenovo Dock Manager proqramında aşkar edilmiş düzgün olmayan icazə zəifliyidir. Bu boşluq yerli autentifikasiya olunmuş istifadəçiyə yüksək səlahiyyətlərlə ixtiyari kod icra etməyə imkan verə bilər. Lenovo məhsul yeniləmələrini təqib etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-269
FAQ2
Does exploiting CVE-2026-63425 require the attacker to be authenticated to the local system?
Yes, the CVE-2026-63425 vulnerability can only be exploited by a local authenticated user.
In which software was CVE-2026-63425 discovered?
This vulnerability was discovered in Lenovo Dock Manager.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.