RSS   Vulnerabilities for 'Personal cloud firmware'   RSS

2018-01-11
 
CVE-2018-5347

CWE-78
 

 
Seagate Media Server in Seagate Personal Cloud has unauthenticated command injection in the uploadTelemetry and getLogs functions in views.py because .psp URLs are handled by the fastcgi.server component and shell metacharacters are mishandled.

 

 >>> Vendor: Seagate 13 Products
Blackarmor nas
Blackarmor nas 220
Blackarmor nas 220 firmware
Goflex sattelite
Wireless mobile storage
Wireless plus mobile storage
Business nas firmware
St500lt015 firmware
St500lt025 firmware
Personal cloud firmware
Blackarmor nas 110 firmware
Nas os
Cortx-s3 server


Copyright 2024, cxsecurity.com

 

Back to Top