Privilege Escalation in Lenovo XClarity Administrator earlier than 1.2.0, if LXCA is used to manage rack switches or chassis with embedded input/output modules (IOMs), certain log files viewable by authenticated users may contain passwords for internal administrative LXCA accounts with temporary passwords that are used internally by LXCA code.
References
Link Resource
http://www.securityfocus.com/bid/95417 Third Party Advisory VDB Entry
https://support.lenovo.com/us/en/product_security/LEN_10605 Patch Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: lenovo

Published: 2017-01-12T22:00:00

Updated: 2017-01-16T10:57:01

Reserved: 2016-09-16T00:00:00


Link: CVE-2016-8221

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-01-12T22:59:00.220

Modified: 2017-01-19T15:59:54.550


Link: CVE-2016-8221

JSON object: View

cve-icon Redhat Information

No data.

CWE