Description

A potential missing authentication vulnerability was reported in some Lenovo Tablets that could allow an unauthorized user with physical access to modify Control Center settings if the device is locked when the "Allow Control Center access when locked" option is disabled.

INFO

Published Date :

2026-01-14T22:20:37.631Z

Last Modified :

2026-01-15T15:56:05.902Z

Source :

lenovo
AFFECTED PRODUCTS

The following products are affected by CVE-2025-14058 vulnerability.

Vendors Products
Lenovo
  • Idea Tab Pro Tb373fu
  • Idea Tab Tb336fu
  • Legion Tab Tb320fc
  • Legion Tab Tb321fu
  • Lenovo Tab With Clear Case Tb311fu
  • Lenovo Tab With Folio Case Tb311xu
  • Tab7
  • Tab Extreme Tb570zu Tb570fu
  • Tab K11 Gen 2 Tb336zu
  • Tab K11 Plus Lte Tb352fu
  • Tab K11 Plus Lte Tb352xu
  • Tab K11 Tb330fu
  • Tab K11 Tb330fup
  • Tab K11 Tb330xu
  • Tab K11 Tb330xup
  • Tab K9 Tb305fu
  • Tab K9 Tb305xu
  • Tab M10 5g Tb360zu
  • Tab M11 Tb330fu Tb330xu
  • Tab M8 4th Gen 2024 Tb301fu
  • Tab M8 4th Gen 2024 Tb301xu
  • Tab M8 4th Gen Tb300fu
  • Tab M8 4th Gen Tb300xu
  • Tab M9 Tb310fu
  • Tab M9 Tb310xu
  • Tab P11 2nd Gen Tb350fu
  • Tab P11 2nd Gen Tb350xu
  • Tab P12 Tb370fu
  • Tab P12 Tb372fu
  • Tab Plus Tb351fu
  • Yoga Tab Plus Tb520fu
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-14058.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact