EIP-2026-101442
PRE-CVESeagate Central 2014.0410.0026-F - Remote Command Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101442. PoCs published by Jeremy Brown.
AI-analyzed exploit summary This exploit leverages a default passwordless root account in Seagate Central's FTP server to upload a PHP shell to the webroot, enabling remote command execution with root privileges due to lighttpd running as root.
Description
Seagate Central 2014.0410.0026-F - Remote Command Execution
Exploits (1)
exploitdb
WORKING POC
by Jeremy Brown · pythonremotehardware
https://www.exploit-db.com/exploits/37184
This exploit leverages a default passwordless root account in Seagate Central's FTP server to upload a PHP shell to the webroot, enabling remote command execution with root privileges due to lighttpd running as root.
Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target:
Seagate Central Firmware Version 2014.0410.0026-F
No auth needed
Prerequisites:
Network access to the Seagate Central device's FTP service (port 21) · FTP service must be running and accessible
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026