VYPR
Medium severity6.5NVD Advisory· Published Nov 30, 2018· Updated Jun 17, 2026

CVE-2018-16097

CVE-2018-16097

Description

LXCI for VMware versions prior to 5.5 and LXCI for Microsoft System Center versions prior to 3.5, allow an authenticated user to write to any system file due to insufficient sanitization during the upload of a certificate.

Affected products

6
  • cpe:2.3:a:lenovo:xclarity_integrator:*:*:*:*:*:scvmm:*:*+ 1 more
    • cpe:2.3:a:lenovo:xclarity_integrator:*:*:*:*:*:scvmm:*:*range: <3.5
    • cpe:2.3:a:lenovo:xclarity_integrator:*:*:*:*:*:vcenter:*:*range: <5.5
  • Lenovo/LXCI for VMwarellm-fuzzy2 versions
    <5.5+ 1 more
    • (no CPE)range: <5.5
    • (no CPE)range: unspecified
  • <3.5+ 1 more
    • (no CPE)range: <3.5
    • (no CPE)range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.