CVE-2026-0421
Unknown
Unknown - Not Provided
BaseFortify
Publication date: 2026-01-14
Last updated on: 2026-01-16
Assigner: Lenovo Group Ltd.
Description
Description
A potential vulnerability was reported in the BIOS of L13 Gen 6, L13 Gen 6 2-in-1, L14 Gen 6, and L16 Gen 2 ThinkPads which could result in Secure Boot being disabled even when configured as βOnβ in the BIOS setup menu. This issue only affects systems where Secure Boot is set to User Mode.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| lenovo | thinkpad_l13_gen_6 | * |
| lenovo | thinkpad_l13_gen_6_2-in-1 | * |
| lenovo | thinkpad_l14_gen_6 | * |
| lenovo | thinkpad_l16_gen_2 | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-252 | The product does not check the return value from a method or function, which can prevent it from detecting unexpected states and conditions. |
Attack-Flow Graph
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70