Seagate BlackArmor NAS allows remote malicious users to execute arbitrary code via the session parameter to localhost/backupmgt/localJob.php or the auth_name parameter to localhost/backupmgmt/pre_connect_check.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
seagate blackarmor_nas_220_firmware - |
||
seagate blackarmor_nas_110_firmware - |