CVE Vulnerabilities

CVE-2019-6178

Published: Aug 19, 2019 | Modified: Oct 14, 2022
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

An information leakage vulnerability in Iomega and LenovoEMC NAS products could allow disclosure of some device details such as Share names through the device API when Personal Cloud is enabled. This does not allow read, write, delete, or any other access to the underlying file systems and their contents.

Affected Software

Name Vendor Start Version End Version
Px12-350r_firmware Lenovo 4.0.24.34808 (including) 4.0.24.34808 (including)

References