CVE-2024-45101
EUVD-2024-4130713.09.2024, 18:15
A privilege escalation vulnerability was discovered when Single Sign On (SSO) is enabled that could allow an attacker to intercept a valid, authenticated LXCA user’s XCC session if they can convince the user to click on a specially crafted URL.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| lenovo | xclarity_administrator | 𝑥 < 4.1 | ADP |
Common Weakness Enumeration