An improper certificate validation vulnerability was reported in LADM that could allow a network attacker with the ability to redirect an update request to a remote server and execute code with elevated privileges.CreditsLenovo thanks jh_535252 for reporting this issue.Referenceshttps://support.lenovo.co/us/en/product_security/LEN-174319