CVE-2020-6627
CRITICALSeagate Central NAS STCG2000300 STCG3000300 STCG4000300 - OS Command Injection via mv_backend_launch
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-6627. PoCs published by Ege Balci.
AI-analyzed exploit summary This Metasploit module exploits a broken access control vulnerability in Seagate Central NAS to create an admin user and gain SSH access. It manipulates device state and adds a new user with admin privileges.
Description
The web-management application on Seagate Central NAS STCG2000300, STCG3000300, and STCG4000300 devices allows OS command injection via mv_backend_launch in cirrus/application/helpers/mv_backend_helper.php by leveraging the "start" state and sending a check_device_name request.
Exploits (1)
This Metasploit module exploits a broken access control vulnerability in Seagate Central NAS to create an admin user and gain SSH access. It manipulates device state and adds a new user with admin privileges.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H