High severity7.5NVD Advisory· Published Jun 4, 2017· Updated Jun 17, 2026
CVE-2016-8230
CVE-2016-8230
Description
In Lenovo Service Bridge before version 4, an insecure HTTP connection is used by LSB to send system serial number, machine type and model and product name to Lenovo's servers.
Affected products
3cpe:2.3:a:lenovo:lenovo_service_bridge:-:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:lenovo:lenovo_service_bridge:-:*:*:*:*:*:*:*
- (no CPE)range: <4
- (no CPE)range: Earlier than version 4
Patches
Vulnerability mechanics
References
1- support.lenovo.com/us/en/product_security/LEN-10149nvdVendor Advisory
News mentions
0No linked articles in our index yet.