VYPR

Xclarity Integrator

by Lenovo

CVEs (4)

  • CVE-2019-6179HigSep 3, 2019
    risk 0.49cvss 7.5epss 0.01

    An XML External Entity (XXE) processing vulnerability was reported in Lenovo XClarity Administrator (LXCA) prior to version 2.5.0 , Lenovo XClarity Integrator (LXCI) for Microsoft System Center prior to version 7.7.0, and Lenovo XClarity Integrator (LXCI) for VMWare vCenter…

  • CVE-2018-9072MedNov 30, 2018
    risk 0.42cvss 6.5epss 0.01

    In versions prior to 5.5, LXCI for VMware allows an authenticated user to download any system file due to insufficient input sanitization during file downloads.

  • CVE-2018-16097MedNov 30, 2018
    risk 0.42cvss 6.5epss 0.00

    LXCI for VMware versions prior to 5.5 and LXCI for Microsoft System Center versions prior to 3.5, allow an authenticated user to write to any system file due to insufficient sanitization during the upload of a certificate.

  • CVE-2018-16093MedNov 30, 2018
    risk 0.42cvss 6.5epss 0.01

    In versions prior to 5.5, LXCI for VMware allows an authenticated user to write to any system file due to insufficient sanitization during the upload of a backup file.