Xclarity Orchestrator Lenovo Xclarity Orchestrator

Do you want an email whenever new security vulnerabilities are reported in Lenovo Xclarity Orchestrator?

By the Year

In 2024 there have been 0 vulnerabilities in Lenovo Xclarity Orchestrator . Xclarity Orchestrator did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2024 0 0.00
2023 0 0.00
2022 0 0.00
2021 1 4.90
2020 0 0.00
2019 0 0.00
2018 0 0.00

It may take a day or so for new Xclarity Orchestrator vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Lenovo Xclarity Orchestrator Security Vulnerabilities

An internal product security audit of LXCO, prior to version 1.2.2, discovered

CVE-2021-3417 4.9 - Medium - March 09, 2021

An internal product security audit of LXCO, prior to version 1.2.2, discovered that credentials for Lenovo XClarity Administrator (LXCA), if added as a Resource Manager, are encoded then written to an internal LXCO log file each time a session is established with LXCA. Affected logs are captured in the First Failure Data Capture (FFDC) service log. The FFDC service log is only generated when requested by a privileged LXCO user and it is only accessible to the privileged LXCO user that requested the file.

Cleartext Transmission of Sensitive Information

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Lenovo Xclarity Orchestrator or by Lenovo? Click the Watch button to subscribe.

Lenovo
Vendor

subscribe