Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update Lenovo App Store Client to version 9.0.2530.1027 or later.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://iknow.lenovo.com.cn/detail/434329 |
|
Mon, 02 Feb 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:lenovo:app_store:*:*:*:*:*:*:*:* |
Thu, 13 Nov 2025 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Lenovo
Lenovo app Store |
|
| Vendors & Products |
Lenovo
Lenovo app Store |
Wed, 12 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 12 Nov 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper permissions vulnerability was reported in Lenovo App Store that could allow a local authenticated user to execute code with elevated privileges during installation of an application. | |
| Weaknesses | CWE-276 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2025-11-12T21:03:39.691Z
Reserved: 2025-08-01T19:34:14.601Z
Link: CVE-2025-8485
Updated: 2025-11-12T20:37:38.427Z
Status : Analyzed
Published: 2025-11-12T20:15:45.610
Modified: 2026-02-02T15:39:07.313
Link: CVE-2025-8485
No data.
OpenCVE Enrichment
Updated: 2025-11-13T09:52:23Z