CVE-2015-2875: Path Traversal
Absolute path traversal vulnerability on Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 allows remote attackers to read arbitrary files via a full pathname in a download request during a Wi-Fi session.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-2875?
CVE-2015-2875 is classified as a high severity vulnerability due to its potential for remote exploitation.
How do I fix CVE-2015-2875?
To fix CVE-2015-2875, update the firmware of affected Seagate and LaCie devices to version 3.4.1.105 or later.
Which devices are affected by CVE-2015-2875?
CVE-2015-2875 affects Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, and Seagate Wireless Plus Mobile Storage devices.
What type of vulnerability is CVE-2015-2875?
CVE-2015-2875 is an absolute path traversal vulnerability allowing unauthorized access to files.
Can CVE-2015-2875 be exploited remotely?
Yes, CVE-2015-2875 can be exploited remotely through a crafted download request during a Wi-Fi session.