Lucene search

K
lenovoLenovoLENOVO:PS500309-NOSID
HistoryFeb 08, 2020 - 10:40 p.m.

Lenovo EZ Media & Backup Center Vulnerability - Lenovo Support US

2020-02-0822:40:21
support.lenovo.com
14

0.001 Low

EPSS

Percentile

47.0%

Lenovo Security Advisory: LEN-30242

Potential Impact: URL Redirection

Severity: Medium

Scope of Impact: Lenovo-specific

**CVE Identifier:**CVE-2019-19758

Summary Description:

A vulnerability in the web interface of Lenovo EZ Media & Backup Center, ix2 & ix2-dl could allow an unauthenticated, remote attacker to redirect a user to an untrusted web page.

Mitigation Strategy for Customers (what you should do to protect yourself):

Lenovo has ended support for Lenovo EZ Media & Backup Center, ix2 & ix2-dl as of March 31, 2019, therefore Lenovo recommends discontinuation of use.

If it is not feasible to discontinue use, Lenovo recommends using the device only on trusted networks and clicking on device URLs only from trustworthy sources.

References:

<https://support.lenovo.com/us/en/solutions/endofservice&gt;

Acknowledgement:

Lenovo thanks Mostafa Noureldin for reporting this issue.

Revision History:

Revision

|

Date

|

Description

β€”|β€”|β€”
1 | 2020-02-11 | Initial release

For a complete list of all Lenovo Product Security Advisories, click here.

For the most up to date information, please remain current with updates and advisories from Lenovo regarding your equipment and software. The information provided in this advisory is provided on an β€œas is” basis without any warranty or guarantee of any kind. Lenovo reserves the right to change or update this advisory at any time.

0.001 Low

EPSS

Percentile

47.0%

Related for LENOVO:PS500309-NOSID