ID
VAR-201004-0610
TITLE
Iomega Home Media Network Hard Drive 'smbwebclient.php' Authentication Bypass Vulnerability
Trust: 0.3
sources:
BID: 39474
DESCRIPTION
Iomega Home Media Network Hard Drive is prone to an authentication-bypass vulnerability. Attackers can leverage this issue to gain full browser-based read/write access to any visible shares on the device itself or the rest of the device's local network without proper authentication. Successful exploits may lead to other attacks. This issue affects the Iomega Home Media Network Hard Drive Firmware versions 2.038 - 2.061.
Trust: 0.3
sources:
BID: 39474
AFFECTED PRODUCTS
vendor: | iomega | model: | home media network hard drive | scope: | eq | version: | 2.061 | Trust: 0.3 |
vendor: | iomega | model: | home media network hard drive | scope: | eq | version: | 2.038 | Trust: 0.3 |
vendor: | iomega | model: | home media network hard drive | scope: | ne | version: | 2.063 | Trust: 0.3 |
sources:
BID: 39474
THREAT TYPE
network
Trust: 0.3
sources:
BID: 39474
TYPE
Access Validation Error
Trust: 0.3
sources:
BID: 39474
EXTERNAL IDS
db: | BID | id: | 39474 | Trust: 0.3 |
sources:
BID: 39474
REFERENCES
url: | https://iomega-na-en.custhelp.com/cgi-bin/iomega_na_en.cfg/php/enduser/std_adp.php?p_faqid=21149&p_created=1231204221&p_sid=adbeoozj&p_accessibility=&p_redirect=&p_lva=&p_sp=cf9zcmnopszwx3nvcnrfynk9jn | Trust: 0.3 |
url: | http://www.iomega.com/global_landing.html | Trust: 0.3 |
url: | /archive/1/510715 | Trust: 0.3 |
sources:
BID: 39474
CREDITS
fizix610
Trust: 0.3
sources:
BID: 39474
SOURCES
db: | BID | id: | 39474 |
LAST UPDATE DATE
2022-05-17T01:46:49.557000+00:00
SOURCES UPDATE DATE
db: | BID | id: | 39474 | date: | 2010-04-14T00:00:00 |
SOURCES RELEASE DATE
db: | BID | id: | 39474 | date: | 2010-04-14T00:00:00 |