### [CVE-2015-2874](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2874) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 have a default password of root for the root account, which allows remote attackers to obtain administrative access via a TELNET session. ### POC #### Reference - https://www.kb.cert.org/vuls/id/903500 - https://www.kb.cert.org/vuls/id/GWAN-9ZGTUH - https://www.kb.cert.org/vuls/id/GWAN-A26L3F #### Github - https://github.com/ARPSyndicate/cvemon