Vulnerability CVE-2023-4607


Published: 2023-10-25

Description:
An authenticated XCC user can change permissions for any user through a crafted API command.

Type:

CWE-269

(Improper Privilege Management)

 References:
https://support.lenovo.com/us/en/product_security/LEN-140960

Copyright 2026, cxsecurity.com

 

Back to Top