Description
A vulnerability in the web interface of Lenovo EZ Media & Backup Center, ix2 & ix2-dl version 4.1.406.34763 and prior could allow an unauthenticated, remote attacker to redirect a user to an untrusted web page.
Published: 2020-02-14
Score: 6.1 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Lenovo has ended support for Lenovo EZ Media & Backup Center, ix2 & ix2-dl as of March 31, 2019, therefore Lenovo recommends discontinuation of use. If it is not feasible to discontinue use, Lenovo recommends using the device only on trusted networks and clicking on device URLs only from trustworthy sources.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-9358 A vulnerability in the web interface of Lenovo EZ Media & Backup Center, ix2 & ix2-dl version 4.1.406.34763 and prior could allow an unauthenticated, remote attacker to redirect a user to an untrusted web page.
History

No history.

Subscriptions

Lenovo Ez Media \& Backup Center Ix2 Ez Media \& Backup Center Ix2-dl Ez Media \& Backup Center Ix2-dl Firmware Ez Media \& Backup Center Ix2 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-09-16T16:23:29.531Z

Reserved: 2019-12-12T00:00:00.000Z

Link: CVE-2019-19758

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-02-14T17:15:11.987

Modified: 2024-11-21T04:35:20.223

Link: CVE-2019-19758

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses