Security Advisory
CVE-2019-6171
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
A vulnerability was reported in various BIOS versions of older ThinkPad systems that could allow a user with administrative privileges or physical access the ability to update the Embedded Controller with unsigned firmware.