An unauthenticated XML external entity injection (XXE) vulnerability exists in LXCA's Common Information Model (CIM) server that could result in read-only access to specific files.
2023-06-26T20:15:10.653
2024-11-21T08:16:29.327
Modified
CVSSv3.1: 8.2 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | lenovo | xclarity_administrator | < 4.0.0 | Yes |