PT-2016-3855 · Lenovoemc · Lenovoemc Px4-300D+9
Published
2016-04-08
·
Updated
2016-04-14
·
CVE-2015-8108
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
LenovoEMC EZ Media & Backup (hm3) versions prior to 4.1.204.33661
LenovoEMC ix2/ix2-dl versions prior to 4.1.204.33661
LenovoEMC ix4-300d versions prior to 4.1.204.33661
LenovoEMC px12-400r/450r versions prior to 4.1.204.33661
LenovoEMC px6-300d versions prior to 4.1.204.33661
LenovoEMC px2-300d versions prior to 4.1.204.33661
LenovoEMC px4-300r versions prior to 4.1.204.33661
LenovoEMC px4-400d versions prior to 4.1.204.33661
LenovoEMC px4-400r versions prior to 4.1.204.33661
LenovoEMC px4-300d versions prior to 4.1.204.33661
Description
The management interface in various LenovoEMC NAS devices allows remote attackers to obtain sensitive device information via unspecified vectors.
Recommendations
For LenovoEMC EZ Media & Backup (hm3) versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.
For LenovoEMC ix2/ix2-dl versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.
For LenovoEMC ix4-300d versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.
For LenovoEMC px12-400r/450r versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.
For LenovoEMC px6-300d versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.
For LenovoEMC px2-300d versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.
For LenovoEMC px4-300r versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.
For LenovoEMC px4-400d versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.
For LenovoEMC px4-400r versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.
For LenovoEMC px4-300d versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Lenovoemc Ez Media & Backup
Lenovoemc Ix2
Lenovoemc Ix2-Dl
Lenovoemc Ix4-300D
Lenovoemc Px12-400R
Lenovoemc Px12-450R
Lenovoemc Px2-300D
Lenovoemc Px4-300D
Lenovoemc Px4-400D
Lenovoemc Px6-300D