ZeroHour

CVE-2021-42849

CVSS 3.1
6.8 medium
EPSS
<1%p13
Published
()
Modified
Description

A weak default password for the serial port was reported in some Lenovo Personal Cloud Storage devices that could allow unauthorized device access to an attacker with physical access.

Vendors
lenovo
Products
a1 firmware, t1 firmware, x1 firmware, t2 firmware, t2pro firmware
Weakness
CWE-798, CWE-287
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.