Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
iomega storcenter vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2019-6160
A vulnerability in various versions of Iomega and LenovoEMC NAS products could allow an unauthenticated user to access files on NAS shares via the API.
Lenovo Px12-350r Firmware
Lenovo Ix12-300r Firmware
Lenovo Home Media Network Hard Drive Firmware
Lenovo Storcenter Ix2-200 Firmware
Lenovo Storcenter Ix4-200d Firmware
Lenovo Storcenter Ix4-200rl Firmware
8.8
CVSSv3
CVE-2018-9078
For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and previous versions, the Content Explorer application grants users the ability to upload files to shares and this image was rendered in the browser in the device's origin instead of prompting to download...
Lenovo Storcenter Px12-450r Firmware 4.1.402.34662
Lenovo Storcenter Px12-400r Firmware 4.1.402.34662
Lenovo Storcenter Px4-300r Firmware 4.1.402.34662
Lenovo Storcenter Px6-300d Firmware 4.1.402.34662
Lenovo Storcenter Px4-300d Firmware 4.1.402.34662
Lenovo Storcenter Px2-300d Firmware 4.1.402.34662
Lenovo Storcenter Ix4-300d Firmware 4.1.402.34662
Lenovo Storcenter Ix2 Firmware 4.1.402.34662
Lenovo Storcenter Ix2-dl Firmware 4.1.402.34662
Lenovo Ez Media & Backup Center Firmware 4.1.402.34662
Lenovo Px12-450r Firmware 4.1.402.34662
Lenovo Px12-400r Firmware 4.1.402.34662
Lenovo Px4-400r Firmware 4.1.402.34662
Lenovo Px4-300r Firmware 4.1.402.34662
Lenovo Px6-300d Firmware 4.1.402.34662
Lenovo Px4-400d Firmware 4.1.402.34662
Lenovo Px4-300d Firmware 4.1.402.34662
Lenovo Px2-300d Firmware 4.1.402.34662
Lenovo Ix4-300d Firmware 4.1.402.34662
Lenovo Ix2 Firmware 4.1.402.34662
9.8
CVSSv3
CVE-2018-9079
For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and previous versions, adversaries can craft URLs to modify the Document Object Model (DOM) of the page. In addition, adversaries can inject HTML script tags and HTML tags with JavaScript handlers to execute ar...
Lenovo Storcenter Px12-450r Firmware 4.1.402.34662
Lenovo Storcenter Px12-400r Firmware 4.1.402.34662
Lenovo Storcenter Px4-300r Firmware 4.1.402.34662
Lenovo Storcenter Px6-300d Firmware 4.1.402.34662
Lenovo Storcenter Px4-300d Firmware 4.1.402.34662
Lenovo Storcenter Px2-300d Firmware 4.1.402.34662
Lenovo Storcenter Ix4-300d Firmware 4.1.402.34662
Lenovo Storcenter Ix2 Firmware 4.1.402.34662
Lenovo Storcenter Ix2-dl Firmware 4.1.402.34662
Lenovo Ez Media & Backup Center Firmware 4.1.402.34662
Lenovo Px12-450r Firmware 4.1.402.34662
Lenovo Px12-400r Firmware 4.1.402.34662
Lenovo Px4-400r Firmware 4.1.402.34662
Lenovo Px4-300r Firmware 4.1.402.34662
Lenovo Px6-300d Firmware 4.1.402.34662
Lenovo Px4-400d Firmware 4.1.402.34662
Lenovo Px4-300d Firmware 4.1.402.34662
Lenovo Px2-300d Firmware 4.1.402.34662
Lenovo Ix4-300d Firmware 4.1.402.34662
Lenovo Ix2 Firmware 4.1.402.34662
5.9
CVSSv3
CVE-2018-9080
For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and previous versions, by setting the Iomega cookie to a known value before logging into the NAS's web application, the NAS will not provide the user a new cookie value. This allows an attacker who knows t...
Lenovo Storcenter Px12-450r Firmware 4.1.402.34662
Lenovo Storcenter Px12-400r Firmware 4.1.402.34662
Lenovo Storcenter Px4-300r Firmware 4.1.402.34662
Lenovo Storcenter Px6-300d Firmware 4.1.402.34662
Lenovo Storcenter Px4-300d Firmware 4.1.402.34662
Lenovo Storcenter Px2-300d Firmware 4.1.402.34662
Lenovo Storcenter Ix4-300d Firmware 4.1.402.34662
Lenovo Storcenter Ix2 Firmware 4.1.402.34662
Lenovo Storcenter Ix2-dl Firmware 4.1.402.34662
Lenovo Ez Media & Backup Center Firmware 4.1.402.34662
Lenovo Px12-450r Firmware 4.1.402.34662
Lenovo Px12-400r Firmware 4.1.402.34662
Lenovo Px4-400r Firmware 4.1.402.34662
Lenovo Px4-300r Firmware 4.1.402.34662
Lenovo Px6-300d Firmware 4.1.402.34662
Lenovo Px4-400d Firmware 4.1.402.34662
Lenovo Px4-300d Firmware 4.1.402.34662
Lenovo Px2-300d Firmware 4.1.402.34662
Lenovo Ix4-300d Firmware 4.1.402.34662
Lenovo Ix2 Firmware 4.1.402.34662
4.7
CVSSv3
CVE-2018-9081
For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and previous versions, the file name used for assets accessible through the Content Viewer application are vulnerable to self cross-site scripting self-XSS. As a result, adversaries can add files to shares acce...
Lenovo Storcenter Px12-450r Firmware 4.1.402.34662
Lenovo Storcenter Px12-400r Firmware 4.1.402.34662
Lenovo Storcenter Px4-300r Firmware 4.1.402.34662
Lenovo Storcenter Px6-300d Firmware 4.1.402.34662
Lenovo Storcenter Px4-300d Firmware 4.1.402.34662
Lenovo Storcenter Px2-300d Firmware 4.1.402.34662
Lenovo Storcenter Ix4-300d Firmware 4.1.402.34662
Lenovo Storcenter Ix2 Firmware 4.1.402.34662
Lenovo Storcenter Ix2-dl Firmware 4.1.402.34662
Lenovo Ez Media & Backup Center Firmware 4.1.402.34662
Lenovo Px12-450r Firmware 4.1.402.34662
Lenovo Px12-400r Firmware 4.1.402.34662
Lenovo Px4-400r Firmware 4.1.402.34662
Lenovo Px4-300r Firmware 4.1.402.34662
Lenovo Px6-300d Firmware 4.1.402.34662
Lenovo Px4-400d Firmware 4.1.402.34662
Lenovo Px4-300d Firmware 4.1.402.34662
Lenovo Px2-300d Firmware 4.1.402.34662
Lenovo Ix4-300d Firmware 4.1.402.34662
Lenovo Ix2 Firmware 4.1.402.34662
8.8
CVSSv3
CVE-2018-9082
For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and previous versions, the password changing functionality available to authenticated users does not require the user's current password to set a new one. As a result, attackers with access to the user...
Lenovo Storcenter Px12-450r Firmware 4.1.402.34662
Lenovo Storcenter Px12-400r Firmware 4.1.402.34662
Lenovo Storcenter Px4-300r Firmware 4.1.402.34662
Lenovo Storcenter Px6-300d Firmware 4.1.402.34662
Lenovo Storcenter Px4-300d Firmware 4.1.402.34662
Lenovo Storcenter Px2-300d Firmware 4.1.402.34662
Lenovo Storcenter Ix4-300d Firmware 4.1.402.34662
Lenovo Storcenter Ix2 Firmware 4.1.402.34662
Lenovo Storcenter Ix2-dl Firmware 4.1.402.34662
Lenovo Ez Media & Backup Center Firmware 4.1.402.34662
Lenovo Px12-450r Firmware 4.1.402.34662
Lenovo Px12-400r Firmware 4.1.402.34662
Lenovo Px4-400r Firmware 4.1.402.34662
Lenovo Px4-300r Firmware 4.1.402.34662
Lenovo Px6-300d Firmware 4.1.402.34662
Lenovo Px4-400d Firmware 4.1.402.34662
Lenovo Px4-300d Firmware 4.1.402.34662
Lenovo Px2-300d Firmware 4.1.402.34662
Lenovo Ix4-300d Firmware 4.1.402.34662
Lenovo Ix2 Firmware 4.1.402.34662
NA
CVE-2012-2283
The Iomega Home Media Network Hard Drive with EMC Lifeline firmware prior to 2.104, Home Media Network Hard Drive Cloud Edition with EMC Lifeline firmware prior to 3.2.3.15290, iConnect with EMC Lifeline firmware prior to 2.5.26.18966, and StorCenter with EMC Lifeline firmware pr...
Emc Lifeline
Iomega Home Media Network Hard Drive
Iomega Iconnect
Emc Lifeline 23.2.3.15289
Iomega Storcenter
9.8
CVSSv3
CVE-2009-2367
cgi-bin/makecgi-pro in Iomega StorCenter Pro generates predictable session IDs, which allows remote malicious users to hijack active sessions and gain privileges via brute force guessing attacks on the session_id parameter.
Iomega Storcenter Pro Firmware -
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
logic flaw
CVE-2024-23692
CVE-2024-26229
CVE-2024-35255
CVE-2024-5835
CVE-2024-5837
XML external entity
dos
CVE-2024-5813
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started