SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-6511

MEDIUM · CVSS 5.5 EPSS 0.09%

Source: NVD + CISA KEV + EPSS · Published 2026-07-16 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Lenovo Smart Connect for Windows contains an improper access control vulnerability that permits local authenticated users to access files belonging to other users on the same system. This could lead to unauthorized data exposure, impacting user privacy and data integrity. Organizations using this software should prioritize remediation to mitigate potential risks associated with data breaches.

CVE
CVE-2026-6511
Severity
MEDIUM
CVSS
5.5
EPSS
0.09%
Windows

Original NVD Description

During an internal security assessment, a potential improper access control vulnerability was discovered in Lenovo Smart Connect for Windows that could allow a local authenticated user to access files owned by a different user on the same system.