ZeroHour

CVE-2021-42850

CVSS 3.1
7.8 high
EPSS
<1%p14
Published
()
Modified
Description

A weak default administrator password for the web interface and serial port was reported in some Lenovo Personal Cloud Storage devices that could allow unauthorized device access to an attacker with physical or local network access.

Vendors
lenovo
Products
a1 firmware, t1 firmware, x1 firmware, t2 firmware, t2pro firmware
Weakness
CWE-798
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.