Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 have a default password of root for the root account, which allows remote attackers to obtain administrative access via a TELNET session.
2015-12-31T05:59:02.673
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Hardware | seagate | wireless_mobile_storage | * | Yes |
Hardware | seagate | wireless_plus_mobile_storage | * | Yes |
Hardware | lacie | lac9000436u | * | No |
Hardware | lacie | lac9000464u | * | No |
Operating System | lacie | lac9000436u_firmware | ≤ 2.3.0.014 | Yes |
Operating System | lacie | lac9000464u_firmware | ≤ 2.3.0.014 | Yes |
Hardware | seagate | goflex_sattelite | * | Yes |