Vulnerabilities > CVE-2002-1955 - Authentication vulnerability in Iomega NAS A300U

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
iomega

Summary

Iomega NAS A300U uses cleartext LANMAN authentication when mounting CIFS/SMB drives, which allows remote attackers to perform a man-in-the-middle attack.

Vulnerable Configurations

Part Description Count
Hardware
Iomega
1