CVE-2019-6169: High severity lenovo service bridge vulnerability
Published Jun 26, 2019
·Updated
A vulnerability reported in Lenovo Service Bridge before version 4.1.0.1 could allow unencrypted downloads over FTP.
Affected Software
8 affected components
Lenovo Service Bridge<4.1.0.1
Lenovo Ideacentre
Lenovo Ideapad
Lenovo Tablet Windows
Lenovo Thinkcentre
Lenovo ThinkPad
Lenovo Thinkstation
Lenovo Yoga
Remediation
Information
Upgrade to Lenovo Service Bridge version 4.1.0.1 (or newer).
Event History
Jun 26, 2019
CVE Published
via MITRE·02:12 PM
Data Sourced
via MITRE·02:12 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2019-6169?
CVE-2019-6169 is a vulnerability reported in Lenovo Service Bridge before version 4.1.0.1 that could allow unencrypted downloads over FTP.
2
What software versions are affected by CVE-2019-6169?
Lenovo Service Bridge versions up to and excluding 4.1.0.1 are affected by CVE-2019-6169.
3
What is the severity of CVE-2019-6169?
CVE-2019-6169 has a severity rating of 7.5, which is considered high.
4
How can I fix CVE-2019-6169?
To fix CVE-2019-6169, update Lenovo Service Bridge to version 4.1.0.1 or later.
5
Where can I find more information about CVE-2019-6169?
More information about CVE-2019-6169 can be found at the following link: [https://support.lenovo.com/solutions/LEN-27725](https://support.lenovo.com/solutions/LEN-27725).