8.3
CVSSv2

CVE-2015-2876

Published: 31/12/2015 Updated: 31/12/2015
CVSS v2 Base Score: 8.3 | Impact Score: 10 | Exploitability Score: 6.5
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 739
Vector: AV:A/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Unrestricted file upload vulnerability on Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware prior to 3.4.1.105 allows remote malicious users to execute arbitrary code by uploading a file to /media/sda2 during a Wi-Fi session.

Vulnerable Product Search on Vulmon Subscribe to Product

lacie lac9000436u_firmware

lacie lac9000464u_firmware

seagate wireless plus mobile storage

seagate wireless mobile storage

seagate goflex sattelite

Exploits

BSNL Teracom routers suffer from a firmware rewrite via unrestricted file upload issue and a link modification issue ...