CVE-2023-4607

An authenticated XCC user can change permissions for any user through a crafted API command.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
HIGH
LOW
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
lenovoCNA
7.5 HIGH
NETWORK
HIGH
LOW
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 39%
VendorProductVersion
lenovothinkagile_hx5530_firmware
-
lenovothinkagile_hx7530_firmware
-
lenovothinkagile_vx3331_firmware
-
lenovothinkagile_hx1331_firmware
-
lenovothinkagile_hx2330_firmware
-
lenovothinkagile_hx2331_firmware
-
lenovothinkagile_hx3330_firmware
-
lenovothinkagile_hx3331_firmware
-
lenovothinkagile_hx3331_firmware
-
lenovothinkagile_hx3375_firmware
-
lenovothinkagile_hx3376_firmware
-
lenovothinkagile_hx5531_firmware
-
lenovothinkagile_hx7530_firmware
-
lenovothinkagile_hx7531_firmware
-
lenovothinkagile_hx7531_firmware
-
lenovothinkagile_mx3330-f_all-flash_firmware
-
lenovothinkagile_mx3330-h_hybrid_firmware
-
lenovothinkagile_mx3331-f_all-flash_firmware
-
lenovothinkagile_mx3331-h_hybrid_firmware
-
lenovothinkagile_mx3530_f_all_flash_firmware
-
lenovothinkagile_mx3530-h_hybrid_firmware
-
lenovothinkagile_mx3531_h_hybrid_firmware
-
lenovothinkagile_mx3531-f_all-flash_firmware
-
lenovothinkagile_vx2330_firmware
-
lenovothinkagile_vx3330_firmware
-
lenovothinkagile_vx3530-g_firmware
-
lenovothinkagile_vx5530_firmware
-
lenovothinkagile_vx7330_firmware
-
lenovothinkagile_vx7530_firmware
-
lenovothinkagile_vx7531_firmware
-
lenovothinksystem_sd630_v2_firmware
-
lenovothinksystem_sd650_v2_firmware
-
lenovothinksystem_sd650_v3_firmware
-
lenovothinksystem_sd650-n_v2_firmware
-
lenovothinksystem_sd665_v3_firmware
-
lenovothinksystem_sn550_v2_firmware
-
lenovothinksystem_sr250_firmware
-
lenovothinksystem_sr258_v2_firmware
-
lenovothinksystem_sr630_v2_firmware
-
lenovothinksystem_sr630_v3_firmware
-
lenovothinksystem_sr635_v3_firmware
-
lenovothinksystem_sr645_firmware
-
lenovothinksystem_sr645_v3_firmware
-
lenovothinksystem_sr650_v2_firmware
-
lenovothinksystem_sr650_v3_firmware
-
lenovothinksystem_sr655_v3_firmware
-
lenovothinksystem_sr665_firmware
-
lenovothinksystem_sr665_v3_firmware
-
lenovothinksystem_sr670_firmware
-
lenovothinksystem_sr670_v2_firmware
-
lenovothinksystem_sr675_v3_firmware
-
lenovothinksystem_sr850_v2_firmware
-
lenovothinksystem_sr850_v2_firmware
-
lenovothinksystem_sr850_v3_firmware
-
lenovothinksystem_sr860_v2_firmware
-
lenovothinksystem_sr860_v2_firmware
-
lenovothinksystem_sr860_v3_firmware
-
lenovothinksystem_st250_v2_firmware
-
lenovothinksystem_st258_v2_firmware
-
lenovothinksystem_st650_v2_firmware
-
lenovothinksystem_st650_v3_firmware
-
lenovothinksystem_st658_v2_firmware
-
lenovothinksystem_st658_v3_firmware
-
lenovothinkagile_hx_enclosure_firmware
-
lenovothinkagile_hx1021_edg_firmware
-
lenovothinkagile_hx1320_firmware
-
lenovothinkagile_hx1321_firmware
-
lenovothinkagile_hx1520-r_firmware
-
lenovothinkagile_hx1521-r_firmware
-
lenovothinkagile_hx2320-e_firmware
-
lenovothinkagile_hx2321_firmware
-
lenovothinkagile_hx2720-e_firmware
-
lenovothinkagile_hx3320_firmware
-
lenovothinkagile_hx3321_firmware
-
lenovothinkagile_hx3520-g_firmware
-
lenovothinkagile_hx3521-g_firmware
-
lenovothinkagile_hx3720_firmware
-
lenovothinkagile_hx3721_firmware
-
lenovothinkagile_hx5520_firmware
-
lenovothinkagile_hx5520-c_firmware
-
lenovothinkagile_hx5521_firmware
-
lenovothinkagile_hx5521-c_firmware
-
lenovothinkagile_hx7520_firmware
-
lenovothinkagile_hx7521_firmware
-
lenovothinkagile_hx7820_firmware
-
lenovothinkagile_hx7821_firmware
-
lenovothinkagile_mx_edge-_mx1020__firmware
-
lenovothinkagile_mx630_v3_firmware
-
lenovothinkagile_mx630_v3_intergrated_system_firmware
-
lenovothinkagile_mx650_v3_firmware
-
lenovothinkagile_mx650_v3_intergrated_system_firmware
-
lenovothinkagile_mx1021_on_se350_firmware
-
lenovothinkagile_mx1021_on_se350_firmware
-
lenovothinkagile_vx_1se_firmware
-
lenovothinkagile_vx_2u4n_firmware
-
lenovothinkagile_vx_4u_firmware
-
lenovothinkagile_vx1320_firmware
-
lenovothinkagile_vx2320_firmware
-
lenovothinkagile_vx3320_firmware
-
lenovothinkagile_vx3520-g_firmware
-
lenovothinkagile_vx3720_firmware
-
lenovothinkagile_vx5520_firmware
-
lenovothinkagile_vx7320_n_firmware
-
lenovothinkagile_vx7520_firmware
-
lenovothinkagile_vx7520_n_firmware
-
lenovothinkagile_vx7820_firmware
-
lenovothinkedge_se450__firmware
-
lenovothinksystem_sd530_firmware
-
lenovothinksystem_sd650_dwc_dual_node_tray_firmware
-
lenovothinksystem_sd650_dual_node_tray_firmware
-
lenovothinksystem_se350_firmware
-
lenovothinksystem_se350_firmware
-
lenovothinksystem_sn550_firmware
-
lenovothinksystem_sn550_firmware
-
lenovothinksystem_sn850_firmware
-
lenovothinksystem_sn850_firmware
-
lenovothinksystem_sr150_firmware
-
lenovothinksystem_sr158_firmware
-
lenovothinksystem_sr250_firmware
-
lenovothinksystem_sr258_firmware
-
lenovothinksystem_sr530_firmware
-
lenovothinksystem_sr550_firmware
-
lenovothinksystem_sr570_firmware
-
lenovothinksystem_sr590_firmware
-
lenovothinksystem_sr630_firmware
-
lenovothinksystem_sr650_firmware
-
lenovothinksystem_sr670_firmware
-
lenovothinksystem_sr850_firmware
-
lenovothinksystem_sr850_firmware
-
lenovothinksystem_sr850p_firmware
-
lenovothinksystem_sr860_firmware
-
lenovothinksystem_sr860_firmware
-
lenovothinksystem_sr950_firmware
-
lenovothinksystem_st250_firmware
-
lenovothinksystem_st258_firmware
-
lenovothinksystem_st550_firmware
-
𝑥
= Vulnerable software versions