PT-2002-2585 · Iomega · Iomega Nas A300U
Published
2002-12-31
·
Updated
2008-09-05
·
CVE-2002-1863
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Iomega Network Attached Storage (NAS) A300U
Description
The issue allows local users to access home directories via FTP even when access to all shared directories has been disabled, because the FTP service cannot be disabled.
Recommendations
For Iomega Network Attached Storage (NAS) A300U, consider restricting access to the FTP service as a temporary workaround until a more permanent solution is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Iomega Nas A300U