An internal product security audit of Lenovo XClarity Administrator (LXCA) discovered HTTP proxy credentials being written to a log file in clear text. This only affects LXCA when HTTP proxy credentials have been configured. This affects LXCA versions 2.0.0 to 2.3.x.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-15725 | An internal product security audit of Lenovo XClarity Administrator (LXCA) discovered HTTP proxy credentials being written to a log file in clear text. This only affects LXCA when HTTP proxy credentials have been configured. This affects LXCA versions 2.0.0 to 2.3.x. |
Fixes
Solution
Update your LXCA installation to version 2.4 or later.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2024-09-16T16:53:25.613Z
Reserved: 2019-01-11T00:00:00
Link: CVE-2019-6158
No data.
Status : Modified
Published: 2019-05-03T20:29:01.387
Modified: 2024-11-21T04:46:03.030
Link: CVE-2019-6158
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD