Security Advisory

CVE-2020-24028

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-09-02 16:14:18
Last updated 2025-10-14 12:57:12
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

ForLogic Qualiex v1 and v3 allows any authenticated customer to achieve privilege escalation via user creations, password changes, or user permission updates. NOTE: as of 2025-10-14, the Supplier's perspective is that this "does not allow administrative privilege gain. Authorization is enforced server-side, restricting actions to the user’s own permission scope."