Known Vulnerabilities for Thinksystem St658 V3 Firmware by Lenovo
Listed below are 3 of the newest known vulnerabilities associated with "Thinksystem St658 V3 Firmware" by "Lenovo".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-4608 | An authenticated XCC user with elevated privileges can perform blind SQL injection in limited cases through a crafted API com... | 7.2 - HIGH | 2023-10-25 | 2023-11-07 |
| CVE-2023-4607 | An authenticated XCC user can change permissions for any user through a crafted API command. | 8.8 - HIGH | 2023-10-25 | 2023-11-07 |
| CVE-2023-4606 | An authenticated XCC user with Read-Only permission can change a different user’s password through a crafted API command. ... | 8.1 - HIGH | 2023-10-25 | 2023-11-07 |