CVE-2016-3944: Lenovo Accelerator Application

High severity, CVSS 7.5. EPSS: 2% chance of exploitation in the next 30 days.

UpdateAgent in Lenovo Accelerator Application allows man-in-the-middle attackers to execute arbitrary code by spoofing an update response from susapi.lenovomm.com.

Affected products

  • Lenovo Accelerator Application: affected versions not specified

Published 2016-06-03. Last modified 2026-06-17.