Back

HIGH

The Lenovo Service Framework Android application accepts some responses from the server without proper validation

Published Oct 17, 2017

Description

The Lenovo Service Framework Android application accepts some responses from the server without proper validation. This exposes the application to man-in-the-middle attacks leading to possible remote code execution.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner lenovo
Published Oct 17, 2017
Updated Sep 16, 2024
Reserved Dec 16, 2016
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a