CVE-2020-6627 | Seagate Central NAS STCG4000300 Web-Management Application mv_backend_helper.php mv_backend_launch os command injection (EDB-51487)
A vulnerability, which was classified as critical, has been found in Seagate Central NAS STCG2000300, Central NAS STCG3000300 and Central NAS STCG4000300. Affected by this issue is the function mv_backend_launch of the file cirrus/application/helpers/mv_backend_helper.php of the component Web-Management Application. The manipulation leads to os command injection.
This vulnerability is handled as CVE-2020-6627. The attack needs to be approached within the local network. Furthermore, there is an exploit available.