PT-2019-18007 · Iomega+1 · Iomega Nas+1
Published
2019-08-19
·
Updated
2022-10-14
·
CVE-2019-6178
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Iomega and LenovoEMC NAS products (affected versions not specified)
Description
The issue is related to an information leakage vulnerability. It could allow disclosure of some device details, such as Share names, through the device API when Personal Cloud is enabled. This vulnerability does not provide read, write, delete, or any other access to the underlying file systems and their contents.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Iomega Nas
Lenovoemc Nas