CVE-2023-29057
A valid XCC user's local account permissions overrides their active directory permissions under specific configurations.
A valid XCC user's local account permissions overrides their active directory permissions under specific configurations. This could lead to a privilege escalation. To be vulnerable, LDAP must be configured for authentication/authorization and logins configured as “Local First, then LDAP”.
HIGH · CVSS 7.3
EPSS 0.0027
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0