CVE-2018-5347
Description
Seagate Media Server in Seagate Personal Cloud has unauthenticated command injection in the uploadTelemetry and getLogs functions in views.py because .psp URLs are handled by the fastcgi.server component and shell metacharacters are mishandled.
In plain language
AI Worth attentionCVE-2018-5347 is a serious security flaw in Seagate Personal Cloud that can let an attacker run commands on your device over the network without logging in. If your Personal Cloud is reachable from the internet, you should act now by restricting access and applying any available firmware update.
CVE-2018-5347 is an unauthenticated command injection in Seagate Media Server inside Seagate Personal Cloud (uploadTelemetry and getLogs endpoints in views.py), where crafted requests can include shell metacharacters that get executed by the fastcgi.server handling of .psp URLs.
What to do now
- Check whether your Seagate Personal Cloud device is running Seagate Media Server and whether it’s exposed to the network (especially the internet).
- If it is exposed, immediately restrict access so it’s reachable only from your office/VPN (close public ports and remove any direct internet routing).
- Check Seagate for a firmware/media-server update that removes this command injection (the vendor fix was described as restricting access until an update is released).
- Apply the update as soon as it becomes available, then re-verify that the device is no longer publicly reachable.
CVSS Vector Breakdown
AV:NAttack VectorAC:LAttack ComplexityPR:NPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.
View exploit detailsAttack Graph
Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/⌘ + scroll to zoom, or go fullscreen.
MITRE ATT&CK
1 techniqueReferences
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2018-5347 and every CVE in our database. Create a free account — no credit card required.
Create Free Account