CVE-2025-8557
- EPSS 0.03%
- Published 11.09.2025 18:34:27
- Last modified 15.09.2025 15:22:38
An internal product security audit of Lenovo XClarity Orchestrator (LXCO) discovered the below vulnerability: An attacker with access to a device on the local Lenovo XClarity Orchestrator (LXCO) network segment may be able to manipulate the local de...
CVE-2020-8356
- EPSS 0.17%
- Published 09.03.2021 17:15:12
- Last modified 21.11.2024 05:38:46
An internal product security audit of LXCO, prior to version 1.2.2, discovered that optional passwords, if specified, for the Syslog and SMTP forwarders are written to an internal LXCO log file in clear text. Affected logs are captured in the First F...
CVE-2021-3417
- EPSS 0.14%
- Published 09.03.2021 17:15:12
- Last modified 21.11.2024 06:21:27
An internal product security audit of LXCO, prior to version 1.2.2, discovered that credentials for Lenovo XClarity Administrator (LXCA), if added as a Resource Manager, are encoded then written to an internal LXCO log file each time a session is est...