Skip to main content

Improper Ownership Management

CVE-2024-45103

Severity Medium
Score 4.3/10

Summary

A valid, authenticated LXCA user may be able to unmanage an LXCA managed device in through the LXCA web interface without sufficient privileges.

  • LOW
  • NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • LOW
  • NONE
  • LOW

CWE-282 - Improper Ownership Management

The software assigns the wrong ownership, or does not properly verify the ownership, of an object or resource.

References

Advisory Timeline

  • Published