CVE List

CVE-2021-42852

Critical 8.0

A command injection vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow an authenticated user to execute operating system commands by sending a crafted packet to the device.

Published May 18, 2022.

Affected software

Get alerts for Lenovo A1 Firmware

Reference links