Vulnerability Details CVE-2015-2874
Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 have a default password of root for the root account, which allows remote attackers to obtain administrative access via a TELNET session.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.049
EPSS Ranking 89.1%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2015-2874
-
cpe:2.3:h:lacie:lac9000436u:-
-
cpe:2.3:h:lacie:lac9000464u:-
-
cpe:2.3:h:seagate:goflex_sattelite:-
-
cpe:2.3:h:seagate:wireless_mobile_storage:-
-
cpe:2.3:h:seagate:wireless_plus_mobile_storage:-
-
cpe:2.3:o:lacie:lac9000436u_firmware:2.3.0.014
-
cpe:2.3:o:lacie:lac9000464u_firmware:2.3.0.014