CVE-2016-8223: Lenovo System Interface Foundation

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

During an internal security review, Lenovo identified a local privilege escalation vulnerability in Lenovo System Interface Foundation software installed on some Windows 10 PCs where a user with local privileges could run arbitrary code with administrator level privileges.

Affected products

  • Lenovo System Interface Foundation: up to and including 1.0.66.0

Published 2016-11-29. Last modified 2026-06-17.