CVE-2016-5249: Lenovo Solution Center
High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.
Lenovo Solution Center (LSC) before 3.3.003 allows local users to execute arbitrary code with LocalSystem privileges via vectors involving the LSC.Services.SystemService StartProxy command with a named pipe created in advance and crafted .NET assembly.
Affected products
- Lenovo Solution Center: up to and including 3.3.002
Published 2016-06-30. Last modified 2026-06-17.