vendor:
Seagate Dashboard
by:
HexTitan
7.5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: Seagate Dashboard
Affected Version From: 4.0.21.0
Affected Version To: 4.0.21.0
Patch Exists: NO
Related CWE: N/A
CPE: a:seagate:seagate_dashboard
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 8.1 32bit
2015
Crash PoC Seagate Dashboard 4.0.21.0
The dasboard tool is part of the Seagate software solution for storage. The Dashboard.exe process opens a random port in the 5000-6000 range on each launch. The attached Python script will send 3100 A's to the target port. This will cause a crash in the Dashboard.exe process.
Mitigation:
Until a fix is available, firewall the Dashboard.exe process.