An arbitrary file upload vulnerability was reported in the Lenovo Scanner Pro client during an internal security assessment that could allow remote code execution or unauthorized control of the affected system.
References
| Link | Resource |
|---|---|
| https://iknow.lenovo.com.cn/detail/434326 |
Configurations
No configuration.
History
12 Nov 2025, 20:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-12 20:15
Updated : 2025-11-14 16:42
NVD link : CVE-2025-12048
Mitre link : CVE-2025-12048
CVE.ORG link : CVE-2025-12048
JSON object : View
Products Affected
No product.
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
