VYPR
High severity8.0NVD Advisory· Published Jan 26, 2016· Updated May 6, 2026

CVE-2016-1489

CVE-2016-1489

Description

Lenovo SHAREit before 3.2.0 for Windows and SHAREit before 3.5.48_ww for Android transfer files in cleartext, which allows remote attackers to (1) obtain sensitive information by sniffing the network or (2) conduct man-in-the-middle (MITM) attacks via unspecified vectors.

Affected products

2
  • Lenovo/Shareit2 versions
    cpe:2.3:a:lenovo:shareit:*:*:*:*:*:windows:*:*+ 1 more
    • cpe:2.3:a:lenovo:shareit:*:*:*:*:*:windows:*:*range: <=2.5.1.1
    • cpe:2.3:a:lenovo:shareit:*:*:*:*:*:android:*:*range: <=3.0.18_ww

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.