Описание
An XML External Entity (XXE) processing vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.6.6 that could allow information disclosure.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.6.6 (исключая)
cpe:2.3:a:lenovo:xclarity_administrator:*:*:*:*:*:*:*:*
EPSS
Процентиль: 48%
0.00252
Низкий
5.7 Medium
CVSS3
5.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-611
CWE-611
Связанные уязвимости
github
больше 3 лет назад
An XML External Entity (XXE) processing vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.6.6 that could allow information disclosure.
EPSS
Процентиль: 48%
0.00252
Низкий
5.7 Medium
CVSS3
5.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-611
CWE-611