mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-31 10:09:29 +02:00
20 lines
867 B
Markdown
20 lines
867 B
Markdown
### [CVE-2015-2875](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2875)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Absolute path traversal vulnerability on Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 allows remote attackers to read arbitrary files via a full pathname in a download request during a Wi-Fi session.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://www.kb.cert.org/vuls/id/903500
|
|
- https://www.kb.cert.org/vuls/id/GWAN-9ZGTUH
|
|
- https://www.kb.cert.org/vuls/id/GWAN-A26L3F
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|