CVE-2021-42850
CVE-2021-42850
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 8.8EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
18 may 2022Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A weak default administrator password for the web interface and serial port was reported in some Lenovo Personal Cloud Storage devices that could allow unauthorized device access to an attacker with physical or local network access.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
Lenovo · Personal Cloud Storage A1Lenovo · Personal Cloud Storage T1Lenovo · Personal Cloud Storage T2Lenovo · Personal Cloud Storage T2ProLenovo · Personal Cloud Storage X1¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →