CVE-2024-45104

Publication date

2024-09-13 17:28:55

Family

lenovo

State

PUBLISHED

Description

A valid, authenticated LXCA user without sufficient privileges may be able to use the device identifier to modify an LXCA managed device through a specially crafted web API call.