A vulnerability in the web interface of Lenovo EZ Media & Backup Center, ix2 & ix2-dl version 4.1.406.34763 and prior could allow an unauthenticated, remote attacker to redirect a user to an untrusted web page.
Advisories
Source ID Title
EUVD EUVD EUVD-2019-9358 A vulnerability in the web interface of Lenovo EZ Media & Backup Center, ix2 & ix2-dl version 4.1.406.34763 and prior could allow an unauthenticated, remote attacker to redirect a user to an untrusted web page.
Fixes

Solution

Lenovo has ended support for Lenovo EZ Media & Backup Center, ix2 & ix2-dl as of March 31, 2019, therefore Lenovo recommends discontinuation of use. If it is not feasible to discontinue use, Lenovo recommends using the device only on trusted networks and clicking on device URLs only from trustworthy sources.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-09-16T16:23:29.531Z

Reserved: 2019-12-12T00:00:00

Link: CVE-2019-19758

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-02-14T17:15:11.987

Modified: 2024-11-21T04:35:20.223

Link: CVE-2019-19758

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.