XML External Entity Processing Vulnerability in Lenovo XClarity Products
CVE-2019-6179
Key Information:
- Vendor
Lenovo
- Status
- Vendor
- CVE Published:
- 3 September 2019
What is CVE-2019-6179?
A vulnerability related to XML External Entity (XXE) processing was identified in Lenovo's XClarity Administrator and Integrator products. This vulnerability could allow attackers to exploit the way XML data is parsed, potentially leading to the disclosure of sensitive information. Affected products include Lenovo XClarity Administrator versions prior to 2.5.0, Lenovo XClarity Integrator for Microsoft System Center versions prior to 7.7.0, and Lenovo XClarity Integrator for VMware vCenter versions prior to 6.1.0. It is crucial for users to update their systems to mitigate the risk associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
XClarity Administrator (LXCA) < 2.5.0
XClarity Integrator (LXCI) for Microsoft System Center < 7.7.0
XClarity Integrator (LXCI) for VMware vCenter < 6.1.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved