An XML External Entity (XXE) processing vulnerability was reported in Lenovo XClarity Administrator (LXCA) prior to version 2.5.0 , Lenovo XClarity Integrator (LXCI) for Microsoft System Center prior to version 7.7.0, and Lenovo XClarity Integrator (LXCI) for VMWare vCenter prior to version 6.1.0 that could allow information disclosure.
2019-09-03T19:15:10.647
2024-11-21T04:46:06.747
Modified
CVSSv3.1: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:N/A:N
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | lenovo | xclarity_administrator | < 2.5.0 | Yes |
Application | lenovo | xclarity_integrator | < 6.1.0 | Yes |
Application | lenovo | xclarity_integrator | < 7.7.0 | Yes |