High severity8.8NVD Advisory· Published Dec 31, 2015· Updated May 6, 2026
CVE-2015-2876
CVE-2015-2876
Description
Unrestricted file upload vulnerability on Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 allows remote attackers to execute arbitrary code by uploading a file to /media/sda2 during a Wi-Fi session.
Affected products
5- cpe:2.3:h:seagate:wireless_mobile_storage:*:*:*:*:*:*:*:*
- cpe:2.3:h:seagate:wireless_plus_mobile_storage:*:*:*:*:*:*:*:*
- cpe:2.3:h:seagate:goflex_sattelite:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.kb.cert.org/vuls/id/903500nvdThird Party AdvisoryUS Government Resource
- www.kb.cert.org/vuls/id/GWAN-9ZGTUHnvdThird Party AdvisoryUS Government Resource
- www.kb.cert.org/vuls/id/GWAN-A26L3FnvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.