Lenovo Accessories & Display Manager for Enterprise: Local Auth Code Exec
CVE-2026-63423 Published on August 13, 2026
During an internal security assessment, a potential vulnerability was discovered in Lenovo Accessories and Display Manager for Enterprise for Windows that could allow a local authenticated user to execute arbitrary code with elevated privileges.
Vulnerability Analysis
CVE-2026-63423 can be exploited with local system access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality and integrity and availability.
Weakness Type
Use of Hard-coded Cryptographic Key
The use of a hard-coded cryptographic key significantly increases the possibility that encrypted data may be recovered.
Products Associated with CVE-2026-63423
Want to know whenever a new CVE is published for Lenovo Accessories Display Manager? stack.watch will email you.
Affected Versions
Lenovo Accessories and Display Manager:- Before 1.0.9 is affected.