CVE-2024-38291: High severity extreme networks xiq-se vulnerability
Published Feb 27, 2025
·Updated
In XIQ-SE before 24.2.11, a low-privileged user may be able to access admin passwords, which could lead to privilege escalation.
Affected Software
2 affected components
XIQ XIQ-SE<24.2.11
Extremenetworks Xiq-se<24.2.11
Event History
Feb 27, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-38291?
CVE-2024-38291 has been identified as a low-severity vulnerability.
2
How do I fix CVE-2024-38291?
To mitigate CVE-2024-38291, upgrade XIQ-SE to version 24.2.11 or later.
3
Who is affected by CVE-2024-38291?
CVE-2024-38291 affects users of XIQ-SE versions prior to 24.2.11.
4
What kind of vulnerability is CVE-2024-38291?
CVE-2024-38291 is an unauthorized access issue that allows low-privileged users to access admin passwords.
5
What could happen if CVE-2024-38291 is exploited?
Exploiting CVE-2024-38291 could lead to privilege escalation for low-privileged users.