Lenovo XClarity Administrator(LXCA)是中国联想(Lenovo)公司的一套集中式资源管理解决方案。该产品能够为服务器、存储、网络交换机等提供无代理硬件管理功能。 Lenovo LXCA 2.6.6之前版本中存在信息泄露漏洞。攻击者利用该漏洞未经认证,访问一些配置文件,例如用户名,IP地址,被加密的哈希密码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Lenovo | XClarity Administrator (LXCA) | unspecified ~ 2.6.6 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-19758 | 6.1 MEDIUM | Lenovo EZ Media & Backup Center 输入验证错误漏洞 |
| CVE-2019-6194 | 5.7 MEDIUM | Lenovo XClarity Administrator 代码问题漏洞 |
| CVE-2019-19757 | 5.4 MEDIUM | Lenovo XClarity Administrator 跨站脚本漏洞 |
| CVE-2019-6190 | 5.0 MEDIUM | Lenovo Desktop和WorkStation BIOS 安全漏洞 |
| CVE-2019-6195 | 4.8 MEDIUM | Lenovo XClarity Controller 权限许可和访问控制问题漏洞 |
No comments yet