No analysis available yet.
Vendor Solution
Customers should update to the version (or later) of Lenovo XClarity Controller (XCC) identified in the related Lenovo Product Security Advisory: https://support.lenovo.com/us/en/product_security/LEN-99936 https://support.lenovo.com/us/en/product_security/LEN-99936
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-29450 | A valid, authenticated administrative user can query a web interface API to reveal the configured LDAP client password used by XCC to authenticate to an external LDAP server in certain configurations. There is no exposure where no LDAP client password is configured |
| Link | Providers |
|---|---|
| https://support.lenovo.com/us/en/product_security/LEN-99936 |
|
Thu, 30 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2025-01-30T18:25:51.209Z
Reserved: 2023-02-06T15:09:03.709Z
Link: CVE-2023-25495
Updated: 2024-08-02T11:25:18.487Z
Status : Modified
Published: 2023-04-28T22:15:08.950
Modified: 2024-11-21T07:49:37.177
Link: CVE-2023-25495
No data.
OpenCVE Enrichment
No data.
EUVD