VULNERABILITY INTELLIGENCE

CVE-2016-5249

CVSS score7.8 HIGH
EPSS probability0.64%
CISA KEVNot currently listed
Published2016-06-30
Last modified2026-06-17
CVSS vectorCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

Lenovo Solution Center (LSC) before 3.3.003 allows local users to execute arbitrary code with LocalSystem privileges via vectors involving the LSC.Services.SystemService StartProxy command with a named pipe created in advance and crafted .NET assembly.

Primary references