Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Customers should update to the version (or later) of Lenovo XClarity Controller (XCC) identified in the related Lenovo Product Security Advisory: https://support.lenovo.com/us/en/product_security/LEN-99936 https://support.lenovo.com/us/en/product_security/LEN-99936
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-29447 | A valid, authenticated user may be able to trigger a denial of service of the XCC web user interface or other undefined behavior through a format string injection vulnerability in a web interface API. |
| Link | Providers |
|---|---|
| https://support.lenovo.com/us/en/product_security/LEN-99936 |
|
Thu, 30 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2025-01-30T15:53:03.655Z
Reserved: 2023-02-06T15:09:03.709Z
Link: CVE-2023-25492
Updated: 2024-08-02T11:25:18.567Z
Status : Modified
Published: 2023-05-01T15:15:09.290
Modified: 2024-11-21T07:49:36.720
Link: CVE-2023-25492
No data.
OpenCVE Enrichment
No data.
EUVD