Medium severity6.5NVD Advisory· Published Nov 30, 2018· Updated Jun 17, 2026
CVE-2018-16097
CVE-2018-16097
Description
LXCI for VMware versions prior to 5.5 and LXCI for Microsoft System Center versions prior to 3.5, allow an authenticated user to write to any system file due to insufficient sanitization during the upload of a certificate.
Affected products
6cpe:2.3:a:lenovo:xclarity_integrator:*:*:*:*:*:scvmm:*:*+ 1 more
- cpe:2.3:a:lenovo:xclarity_integrator:*:*:*:*:*:scvmm:*:*range: <3.5
- cpe:2.3:a:lenovo:xclarity_integrator:*:*:*:*:*:vcenter:*:*range: <5.5
<5.5+ 1 more
- (no CPE)range: <5.5
- (no CPE)range: unspecified
<3.5+ 1 more
- (no CPE)range: <3.5
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- support.lenovo.com/us/en/solutions/LEN-23800nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.