CyberRota Analysis
AI-GeneratedLenovo Smart Connect for Windows contains an improper access control vulnerability that permits local authenticated users to access files belonging to other users on the same system. This could lead to unauthorized data exposure, impacting user privacy and data integrity. Organizations using this software should prioritize remediation to mitigate potential risks associated with data breaches.
CVE
CVE-2026-6511
Severity
MEDIUM
CVSS
5.5
EPSS
0.09%
Windows
Original NVD Description
During an internal security assessment, a potential improper access control vulnerability was discovered in Lenovo Smart Connect for Windows that could allow a local authenticated user to access files owned by a different user on the same system.