A valid XCC user's local account permissions overrides their active...
Vulnerability Description
A valid XCC user's local account permissions overrides their active directory permissions under specific configurations. This could lead to a privilege escalation. To be vulnerable, LDAP must be configured for authentication/authorization and logins configured as “Local First, then LDAP”.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-29057
Credits & Attribution
No credits recorded in the NVD database.
More from Lenovo
View All →Affected Vendor
Lenovo
View all reports →