ZeroHour

CVE-2018-12295

PoC
CVSS 3.0
9.8 critical
EPSS
1%p65
Published
()
Modified
Description

SQL injection in folderViewSpecific.psp in Seagate NAS OS version 4.3.15.1 allows attackers to execute arbitrary SQL commands via the dirId URL parameter.

Vendors
seagate
Products
nas os
Weakness
CWE-89
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.