CVE-2024-38509
CVSS V2 None
CVSS V3 None
Description
A privilege escalation vulnerability was discovered in XCC that could allow an authenticated XCC user with elevated privileges to execute arbitrary code via a specially crafted IPMI command.
Overview
- CVE ID
- CVE-2024-38509
- Assigner
- lenovo
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-07-26T19:45:01.471Z
- Last Modified Date
- 2024-07-26T19:45:01.471Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://support.lenovo.com/us/en/product_security/LEN-156781 |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-38509 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-38509 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-07-27 13:09:30 | Added to TrackCVE |