---
id: CVE-2026-2640
title: >-
  During an internal security assessment, a potential vulnerability was
  discovered in Lenovo PC Manager that could allow a local authenticated user to
  terminate privileged processes.
summary: >-
  During an internal security assessment, a potential vulnerability was
  discovered in Lenovo PC Manager that could allow a local authenticated user to
  terminate privileged processes.
severity: medium
cvss: 5.5
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'
cwe:
  - CWE-269
vendor: lenovo
product: pcmanager
affected:
  - pcmanager < 5.1.160.12302
patched:
  - pcmanager 5.1.160.12302
published: '2026-03-11'
updated: '2026-08-24'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-2640'
references:
  - url: 'https://iknow.lenovo.com.cn/detail/438816'
    label: psirt@lenovo.com
tags:
  - nvd
epss: 0.00114
epssPercentile: 0.01694
ingestedAt: '2026-08-24T18:09:09.245Z'
---

## Overview

During an internal security assessment, a potential vulnerability was discovered in Lenovo PC Manager that could allow a local authenticated user to terminate privileged processes.

## Affected

- `pcmanager < 5.1.160.12302`

## Remediation

Upgrade past the affected range:

- `pcmanager 5.1.160.12302`
