CVE-2024-45101

A privilege escalation vulnerability was discovered when Single Sign On (SSO) is enabled that could allow an attacker to intercept a valid, authenticated LXCA user’s XCC session if they can convince the user to click on a specially crafted URL.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Se descubrió una vulnerabilidad de escalada de privilegios cuando se habilita Single Sign On (SSO), que podría permitir a un atacante interceptar la sesión XCC de un usuario LXCA válido y autenticado si puede convencer al usuario de hacer clic en una URL especialmente manipulada.

13 Sep 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-13 18:15

Updated : 2026-04-15 00:35


NVD link : CVE-2024-45101

Mitre link : CVE-2024-45101

CVE.ORG link : CVE-2024-45101


JSON object : View

Products Affected

No product.

CWE
CWE-319

Cleartext Transmission of Sensitive Information