Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Customers should update to the version (or later) of Lenovo XClarity Controller (XCC) identified in the related Lenovo Product Security Advisory: https://support.lenovo.com/us/en/product_security/LEN-99936 https://support.lenovo.com/us/en/product_security/LEN-99936
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-12712 | A valid, authenticated XCC user with read only access may gain elevated privileges through a specifically crafted API call. |
| Link | Providers |
|---|---|
| https://support.lenovo.com/us/en/product_security/LEN-99936 |
|
Thu, 30 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2025-01-30T15:51:03.904Z
Reserved: 2023-02-06T15:09:11.048Z
Link: CVE-2023-0683
Updated: 2024-08-02T05:17:50.317Z
Status : Modified
Published: 2023-05-01T15:15:09.223
Modified: 2024-11-21T07:37:37.157
Link: CVE-2023-0683
No data.
OpenCVE Enrichment
No data.
EUVD