2017-10-16 12:31:07 -04:00
{
2019-03-18 01:41:28 +00:00
"CVE_data_meta" : {
"ASSIGNER" : "psirt@lenovo.com" ,
"DATE_PUBLIC" : "2017-09-21T00:00:00" ,
"ID" : "CVE-2017-3763" ,
"STATE" : "PUBLIC"
} ,
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "Lenovo XClarity Administrator (LXCA)" ,
"version" : {
"version_data" : [
{
"version_value" : "Earlier than 1.3.2"
}
]
}
}
]
} ,
"vendor_name" : "Lenovo Group Ltd."
}
]
}
} ,
"data_format" : "MITRE" ,
"data_type" : "CVE" ,
"data_version" : "4.0" ,
"description" : {
"description_data" : [
2017-10-16 12:31:07 -04:00
{
2019-03-18 01:41:28 +00:00
"lang" : "eng" ,
"value" : "An attacker who obtains access to the location where the LXCA file system is stored may be able to access credentials of local LXCA accounts in LXCA versions earlier than 1.3.2."
2017-10-16 12:31:07 -04:00
}
2019-03-18 01:41:28 +00:00
]
} ,
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng" ,
"value" : "Credential disclosure"
}
]
}
]
} ,
"references" : {
"reference_data" : [
{
"name" : "https://support.lenovo.com/us/en/product_security/LEN-16333" ,
"refsource" : "CONFIRM" ,
"url" : "https://support.lenovo.com/us/en/product_security/LEN-16333"
}
]
}
}