CVE-2026-14371
Severity CVSS v4.0:
HIGH
Type:
CWE-78
OS Command Injections
Publication date:
16/07/2026
Last modified:
16/07/2026
Description
The Lenovo XClarity Integrator for Windows Admin Center plugin version 5.1.1 and below running on the WAC Gateway is vulnerable to Powershell Command Injection when establishing remote PowerShell commands.
Impact
Base Score 4.0
8.80
Severity 4.0
HIGH



