Lenovo Xclarity Orchestrator
By the Year
In 2024 there have been 0 vulnerabilities in Lenovo Xclarity Orchestrator . Xclarity Orchestrator did not have any published security vulnerabilities last year.
Year | Vulnerabilities | Average Score |
---|---|---|
2024 | 0 | 0.00 |
2023 | 0 | 0.00 |
2022 | 0 | 0.00 |
2021 | 1 | 4.90 |
2020 | 0 | 0.00 |
2019 | 0 | 0.00 |
2018 | 0 | 0.00 |
It may take a day or so for new Xclarity Orchestrator vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Lenovo Xclarity Orchestrator Security Vulnerabilities
An internal product security audit of LXCO, prior to version 1.2.2, discovered
CVE-2021-3417
4.9 - Medium
- March 09, 2021
An internal product security audit of LXCO, prior to version 1.2.2, discovered that credentials for Lenovo XClarity Administrator (LXCA), if added as a Resource Manager, are encoded then written to an internal LXCO log file each time a session is established with LXCA. Affected logs are captured in the First Failure Data Capture (FFDC) service log. The FFDC service log is only generated when requested by a privileged LXCO user and it is only accessible to the privileged LXCO user that requested the file.
Cleartext Transmission of Sensitive Information
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Lenovo Xclarity Orchestrator or by Lenovo? Click the Watch button to subscribe.