CVE-2021-42848
CVE-2021-42848
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.3EPSS 0.7%KEV nãoPoC —Patch —
Lifecycle
May 18, 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An information disclosure vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow an unauthenticated user to retrieve device and networking details.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Affected products
Lenovo · Personal Cloud Storage A1Lenovo · Personal Cloud Storage T1Lenovo · Personal Cloud Storage T2Lenovo · Personal Cloud Storage T2ProLenovo · Personal Cloud Storage X1Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →