CVE-2019-6193

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
14/02/2020
Last modified:
17/06/2026

Description

An information disclosure vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.6.6 that could allow unauthenticated access to some configuration files which may contain usernames, license keys, IP addresses, and encrypted password hashes.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:lenovo:xclarity_administrator:*:*:*:*:*:*:*:* 2.6.6 (excluding)