Vulnerabilities > Lenovo > Service Framework > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-10-17 CVE-2017-3758 Unspecified vulnerability in Lenovo Service Framework
Improper access controls on several Android components in the Lenovo Service Framework application can be exploited to enable remote code execution.
network
low complexity
lenovo
critical
9.8
2017-10-17 CVE-2017-3761 OS Command Injection vulnerability in Lenovo Service Framework
The Lenovo Service Framework Android application executes some system commands without proper sanitization of external input.
network
low complexity
lenovo CWE-78
critical
9.8