PT-2019-18007 · Iomega+1 · Iomega Nas+1

Published

2019-08-19

·

Updated

2022-10-14

·

CVE-2019-6178

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Iomega and LenovoEMC NAS products (affected versions not specified)
Description The issue is related to an information leakage vulnerability. It could allow disclosure of some device details, such as Share names, through the device API when Personal Cloud is enabled. This vulnerability does not provide read, write, delete, or any other access to the underlying file systems and their contents.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2019-6178

Affected Products

Iomega Nas
Lenovoemc Nas