CVE-2017-3761: Lenovo Service Framework

Critical severity, CVSS 9.8. EPSS: 4.2% chance of exploitation in the next 30 days.

The Lenovo Service Framework Android application executes some system commands without proper sanitization of external input. In certain cases, this could lead to command injection which, in turn, could lead to remote code execution.

Affected products

  • Lenovo Service Framework: affected versions not specified

Published 2017-10-17. Last modified 2026-06-17.