HIGH
In Lenovo XClarity Administrator (LXCA) before 1.3.0, if service data is downloaded from LXCA, a non-administrative user may have access to password information for users that have previously authenticated to the LXCA's internal LDAP server, including administrative accounts and service accounts with administrative privileges
Published Jun 20, 2017
7.8
HIGHCVSS 3.0
EPSS 0.40%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.