CVE-2023-29056

Publication date

2023-04-28 21:07:40

Family

lenovo

State

PUBLISHED

Description

A valid LDAP user, under specific conditions, will default to read-only permissions when authenticating into XCC. To be vulnerable, XCC must be configured to use an LDAP server for Authentication/Authorization and have the login permission attribute not defined.