CVE-2026-14371: Lenovo Xclarity Integrator For Microsoft Windows Admin Center
High severity, CVSS 8.8. EPSS: 1.2% chance of exploitation in the next 30 days.
The Lenovo XClarity Integrator for Windows Admin Center plugin version 5.1.1 and below running on the WAC Gateway is vulnerable to Powershell Command Injection when establishing remote PowerShell commands.
Affected products
- Lenovo Xclarity Integrator For Microsoft Windows Admin Center: from 4.7.1, up to and including 5.1.1
Published 2026-07-16. Last modified 2026-07-16.