PT-2016-3855 · Lenovoemc · Lenovoemc Px4-300D+9

Published

2016-04-08

·

Updated

2016-04-14

·

CVE-2015-8108

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions LenovoEMC EZ Media & Backup (hm3) versions prior to 4.1.204.33661 LenovoEMC ix2/ix2-dl versions prior to 4.1.204.33661 LenovoEMC ix4-300d versions prior to 4.1.204.33661 LenovoEMC px12-400r/450r versions prior to 4.1.204.33661 LenovoEMC px6-300d versions prior to 4.1.204.33661 LenovoEMC px2-300d versions prior to 4.1.204.33661 LenovoEMC px4-300r versions prior to 4.1.204.33661 LenovoEMC px4-400d versions prior to 4.1.204.33661 LenovoEMC px4-400r versions prior to 4.1.204.33661 LenovoEMC px4-300d versions prior to 4.1.204.33661
Description The management interface in various LenovoEMC NAS devices allows remote attackers to obtain sensitive device information via unspecified vectors.
Recommendations For LenovoEMC EZ Media & Backup (hm3) versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later. For LenovoEMC ix2/ix2-dl versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later. For LenovoEMC ix4-300d versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later. For LenovoEMC px12-400r/450r versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later. For LenovoEMC px6-300d versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later. For LenovoEMC px2-300d versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later. For LenovoEMC px4-300r versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later. For LenovoEMC px4-400d versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later. For LenovoEMC px4-400r versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later. For LenovoEMC px4-300d versions prior to 4.1.204.33661, update to firmware version 4.1.204.33661 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-8108

Affected Products

Lenovoemc Ez Media & Backup
Lenovoemc Ix2
Lenovoemc Ix2-Dl
Lenovoemc Ix4-300D
Lenovoemc Px12-400R
Lenovoemc Px12-450R
Lenovoemc Px2-300D
Lenovoemc Px4-300D
Lenovoemc Px4-400D
Lenovoemc Px6-300D