Lucene search

K
cvelistMitreCVELIST:CVE-2020-6627
HistoryDec 06, 2022 - 12:00 a.m.

CVE-2020-6627

2022-12-0600:00:00
mitre
www.cve.org
3
seagate central nas
web-management
os command injection
cve-2020-6627
cirrus application
mv_backend_launch
check_device_name

AI Score

9.9

Confidence

High

EPSS

0.055

Percentile

93.3%

The web-management application on Seagate Central NAS STCG2000300, STCG3000300, and STCG4000300 devices allows OS command injection via mv_backend_launch in cirrus/application/helpers/mv_backend_helper.php by leveraging the “start” state and sending a check_device_name request.

AI Score

9.9

Confidence

High

EPSS

0.055

Percentile

93.3%

Related for CVELIST:CVE-2020-6627