What is CVE-2026-16793?
CVE-2026-16793 is a command injection vulnerability found in Lenovo XClarity Orchestrator (LXCO) version 2.2.0. It could allow an authenticated attacker to execute arbitrary operating system commands as a privileged user under specific circumstances. Users are advised to apply the security patch provided by Lenovo.
Azərbaycanca: CVE-2026-16793, Lenovo XClarity Orchestrator (LXCO) 2.2.0 versiyasında aşkarlanmış əmr inyeksiyası zəifliyidir. Bu, autentifikasiya olunmuş təcavüzkara xüsusi şəraitdə yüksək imtiyazlı istifadəçi kimi ixtiyari OS əmrləri icra etməyə imkan verə bilər. İstifadəçilərə Lenovo tərəfindən təqdim olunan təhlükəsizlik yamasını tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-77
FAQ2
Does exploiting CVE-2026-16793 require authentication?
Yes, CVE-2026-16793 could allow an authenticated attacker to execute arbitrary operating system commands as a privileged user under specific circumstances.
Which product is affected by CVE-2026-16793?
CVE-2026-16793 is a command injection vulnerability found in Lenovo XClarity Orchestrator (LXCO) version 2.2.0.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.