Field Assessment
AI analysis pending.
CVE
CVE-2018-9064
Severity
HIGH
CVSS
8.8
EPSS
0.96%
Original Filing — NVD Description
In Lenovo xClarity Administrator versions earlier than 2.1.0, an authenticated LXCA user may abuse a web API debug call to retrieve the credentials for the System Manager user.