Vulnerabilities > Lenovo > Service Framework > High

DATE CVE VULNERABILITY TITLE RISK
2017-10-17 CVE-2017-3760 Insufficiently Protected Credentials vulnerability in Lenovo Service Framework
The Lenovo Service Framework Android application uses a set of nonsecure credentials when performing integrity verification of downloaded applications and/or data.
network
high complexity
lenovo CWE-522
8.1
2017-10-17 CVE-2017-3759 Improper Input Validation vulnerability in Lenovo Service Framework
The Lenovo Service Framework Android application accepts some responses from the server without proper validation.
network
high complexity
lenovo CWE-20
8.1