Lenovo

Service Framework

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Veröffentlicht 11.10.2024 16:15:06
  • Zuletzt bearbeitet 15.10.2024 12:58:51

A DLL hijack vulnerability was reported in Lenovo Service Framework that could allow a local attacker to execute code with elevated privileges.

  • EPSS 2.36%
  • Veröffentlicht 17.10.2017 20:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Improper access controls on several Android components in the Lenovo Service Framework application can be exploited to enable remote code execution.

  • EPSS 1.43%
  • Veröffentlicht 17.10.2017 20:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The Lenovo Service Framework Android application accepts some responses from the server without proper validation. This exposes the application to man-in-the-middle attacks leading to possible remote code execution.

  • EPSS 0.83%
  • Veröffentlicht 17.10.2017 20:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The Lenovo Service Framework Android application uses a set of nonsecure credentials when performing integrity verification of downloaded applications and/or data. This exposes the application to man-in-the-middle attacks leading to possible remote c...

  • EPSS 4.52%
  • Veröffentlicht 17.10.2017 20:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The Lenovo Service Framework Android application executes some system commands without proper sanitization of external input. In certain cases, this could lead to command injection which, in turn, could lead to remote code execution.