VendorsSeagatepersonal_cloudall versions
Vulnerabilities

Seagate Personal Cloud

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2018-5347
Seagate Media Server in Seagate Personal Cloud has unauthenticated command injection in the uploadTelemetry and getLogs functions in views.py because .psp URLs are handled by the fastcgi.server component and shell metacharacters are mishandled.
Published 2018-01-12 · Modified
10.01 PoCEPSS 0.542
CVE-2017-18263
Seagate Media Server in Seagate Personal Cloud before 4.3.18.4 has directory traversal in getPhotoPlaylistPhotos.psp via a parameter named url.
Published 2018-04-28 · Modified
7.5EPSS 0.035