CVE Published: 30/07/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: lenovo |
Vendor: Lenovo Group Ltd. |
Product: Lenovo xClarity Administrator Status : PUBLISHED
CVE-2018-9065 Description
In Lenovo xClarity Administrator versions earlier than 2.1.0, an attacker that gains access to the underlying LXCA file system user may be able to retrieve a credential store containing the service processor user names and passwords for servers previously managed by that LXCA instance, and potentially decrypt those credentials more easily than intended.