Back to Database
Status published
High
CVE-2016-3944
UpdateAgent in Lenovo Accelerator Application allows man-in-the-middle attackers to execute...
Vulnerability Description
UpdateAgent in Lenovo Accelerator Application allows man-in-the-middle attackers to execute arbitrary code by spoofing an update response from susapi.lenovomm.com.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-3944
Credits & Attribution
No credits recorded in the NVD database.
References
More from lenovo
View All →CVE-2021-42205
ELAN Miniport touchpad Windows driver before 24.21.51.2, as used in...
Unknown
0
CVE-2019-19705
Realtek Audio Drivers for Windows, as used on the Lenovo...
Unknown
0
CVE-2019-10724
There is a vulnerability with the Dolby DAX2 API system...
Medium
6.5
CVE-2016-5729
Lenovo BIOS EFI Driver allows local administrators to execute arbitrary...
High
8.2
CVE-2016-5249
Lenovo Solution Center (LSC) before 3.3.003 allows local users to...
High
7.8
Affected Vendor
lenovo
View all reports →Affected Software
accelerator application
Vulnerable Versions:
Unknown
Timeline
Official Publish:
June 3rd, 2016
Last Modified:
August 6th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.