SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-14371

HIGH · CVSS 8.8 EPSS 0.76%

Source: NVD + CISA KEV + EPSS · Published 2026-07-16 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The Lenovo XClarity Integrator for Windows Admin Center plugin, specifically versions 5.1.1 and earlier, is susceptible to PowerShell command injection vulnerabilities when executing remote commands. This flaw could allow attackers to execute arbitrary commands on the affected system, potentially compromising its integrity and security. Organizations utilizing this plugin should prioritize remediation to mitigate the risk of unauthorized access and exploitation.

CVE
CVE-2026-14371
Severity
HIGH
CVSS
8.8
EPSS
0.76%
Windows

Original NVD Description

The Lenovo XClarity Integrator for Windows Admin Center plugin version 5.1.1 and below running on the WAC Gateway is vulnerable to Powershell Command Injection when establishing remote PowerShell commands.