CVE-2017-3750
On Lenovo VIBE mobile phones, the Lenovo Security Android application allows private data to be backed up and restored via Android Debug Bridge, which allows tampering leading to privilege escalation in conjunction with CVE-2017-3748 and CVE-2017-3749.
Published:Jun 29, 2017
Last Modified:Apr 20, 2025
EPS:Jun 29, 2017
EPSS Score:0.00014
CVSS Score:6.4
Affected Products
Vendor
Product
Action
Vendor
Google
Product
Android
Google
Android
Vendor
Lenovo
Product
Vibe A1600
Lenovo
Vibe A1600
Vendor
Lenovo
Product
Vibe A2560
Lenovo
Vibe A2560
Vendor
Lenovo
Product
Vibe A2800
Lenovo
Vibe A2800
Vendor
Lenovo
Product
Vibe A2860
Lenovo
Vibe A2860
Vendor
Lenovo
Product
Vibe A2880
Lenovo
Vibe A2880
Vendor
Lenovo
Product
Vibe A3000
Lenovo
Vibe A3000
Vendor
Lenovo
Product
Vibe A3500
Lenovo
Vibe A3500
Vendor
Lenovo
Product
Vibe A3600-d
Lenovo
Vibe A3600-d
Vendor
Lenovo
Product
Vibe A3600u
Lenovo
Vibe A3600u
Vendor
Lenovo
Product
Vibe A3800-d
Lenovo
Vibe A3800-d
Vendor
Lenovo
Product
Vibe A3900
Lenovo
Vibe A3900
Vendor
Lenovo
Product
Vibe A6000
Lenovo
Vibe A6000
Vendor
Lenovo
Product
Vibe A6000-i
Lenovo
Vibe A6000-i
Vendor
Lenovo
Product
Vibe A6020i37
Lenovo
Vibe A6020i37
Vendor
Lenovo
Product
Vibe A6600
Lenovo
Vibe A6600
Vendor
Lenovo
Product
Vibe A6800
Lenovo
Vibe A6800
Vendor
Lenovo
Product
Vibe K30-e
Lenovo
Vibe K30-e
Vendor
Lenovo
Product
Vibe K30-w-cu
Lenovo
Vibe K30-w-cu
Vendor
Lenovo
Product
Vibe K32c30
Lenovo
Vibe K32c30
Vendor
Lenovo
Product
Vibe K80m
Lenovo
Vibe K80m
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
