Database/Firmware, BMC & network fabric
Lenovo XClarity Controller (XCC): Authorization bypass
CVE-2019-6195Firmware, BMC & network fabriccurated
Impact
Authorization bypass — a low-privilege authenticated user gains read access beyond their role
Who can reach it
Network / XCC web
What to do
XCC firmware update; low CVSS but relevant where BMC access is delegated to tenants or remote-hands staff
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.