Security Advisory
CVE-2019-6181
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
A reflected cross-site scripting (XSS) vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.5.0 that could allow a crafted URL, if visited, to cause JavaScript code to be executed in the users web browser. The JavaScript code is not executed on LXCA itself.