First published: Fri Sep 28 2018(Updated: )
For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, when changing the name of a share, an attacker can craft a command injection payload using backtick "``" characters in the share : name parameter. As a result, arbitrary commands may be executed as the root user. The attack requires a value __c and iomega parameter.
Credit: psirt@lenovo.com
Affected Software | Affected Version | How to fix |
---|---|---|
Lenovo Lenovoemc Firmware | <=4.1.402.34662 | |
Lenovo Iomega Ez Media \& Backup Center | ||
Lenovo Iomega Storcenter Ix2 | ||
Lenovo Iomega Storcenter Ix2-dl | ||
Lenovo Iomega Storcenter Ix4-300d | ||
Lenovo Iomega Storcenter Px12-400r | ||
Lenovo Iomega Storcenter Px12-450r | ||
Lenovo Iomega Storcenter Px2-300d | ||
Lenovo Iomega Storcenter Px4-300d | ||
Lenovo Iomega Storcenter Px4-300r | ||
Lenovo Iomega Storcenter Px6-300d | ||
Lenovo Lenovo Ez Media \& Backup Center | ||
Lenovo Lenovo Ix2 | ||
Lenovo Lenovo Ix4-300d | ||
Lenovo Lenovoemc Px12-400r | ||
Lenovo Lenovoemc Px12-450r | ||
Lenovo Lenovoemc Px2-300d | ||
Lenovo Lenovoemc Px4-300d | ||
Lenovo Lenovoemc Px4-300r | ||
Lenovo Lenovoemc Px4-400d | ||
Lenovo Lenovoemc Px4-400r | ||
Lenovo Lenovoemc Px6-300d |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.