VYPR
High severity7.5NVD Advisory· Published Jun 4, 2017· Updated Jun 17, 2026

CVE-2016-8230

CVE-2016-8230

Description

In Lenovo Service Bridge before version 4, an insecure HTTP connection is used by LSB to send system serial number, machine type and model and product name to Lenovo's servers.

Affected products

3
  • cpe:2.3:a:lenovo:lenovo_service_bridge:-:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:lenovo:lenovo_service_bridge:-:*:*:*:*:*:*:*
    • (no CPE)range: <4
    • (no CPE)range: Earlier than version 4

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.