CVE-2019-6179

An XML External Entity (XXE) processing vulnerability was reported in Lenovo XClarity Administrator (LXCA) prior to version 2.5.0 , Lenovo XClarity Integrator (LXCI) for Microsoft System Center prior to version 7.7.0, and Lenovo XClarity Integrator (LXCI) for VMWare vCenter prior to version 6.1.0 that could allow information disclosure.
References
Link Resource
https://support.lenovo.com/solutions/LEN-27805 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:lenovo:xclarity_administrator:*:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:xclarity_integrator:*:*:*:*:*:vcenter:*:*
cpe:2.3:a:lenovo:xclarity_integrator:*:*:*:*:*:scvmm:*:*

History

No history.

Information

Published : 2019-09-03 19:15

Updated : 2023-12-10 12:59


NVD link : CVE-2019-6179

Mitre link : CVE-2019-6179

CVE.ORG link : CVE-2019-6179


JSON object : View

Products Affected

lenovo

  • xclarity_administrator
  • xclarity_integrator
CWE
CWE-611

Improper Restriction of XML External Entity Reference