Seagate Technology LLC Information for VU#515283

Seagate BlackArmor device static administrator password reset vulnerability

Status

Affected

Vendor Statement

No statement is currently available from the vendor regarding this vulnerability.

Vendor Information

Vendor release notes:

4000.1391:
Release Date: June 12th, 2012
File size: 36 MB

Feature Enhancement:
Complete overhaul of the Seagate Global Access service offering that includes:
· New remote share web site at seagate.tappin.com
· New mobile apps to access your BlackArmor NAS from your smartphone or tablet.

Issues addressed:
· USB-NAS backup premature completion message fixed
· Implemented security improvement for php
· Static IP address filter removed
· Improvements to DLNA aimed at the support of MKV files
· .TB hidden folders can now be deleted
· FTP over SSL in FileZilla process improvements
· iTunes compatibility

2000.1311
Release Date: June 12th, 2012
File size: 34.9 MB

Feature Enhancement:
Complete overhaul of the Seagate Global Access service offering that includes:
· New remote share web site at seagate.tappin.com
· New mobile apps to access your BlackArmor NAS from your smartphone or tablet.

Issues addressed:
· Implemented security improvement for php
· Static IP address filter removed
· Improvements to DLNA aimed at the support of MKV files
· .TB hidden folders can now be deleted
· FTP over SSL in FileZilla process improvements
· iTunes compatibility

1000.1301
Release Date: June 12th, 2012
File size: 35.5 MB

Feature Enhancement:
Complete overhaul of the Seagate Global Access service offering that includes:
· New remote share web site at seagate.tappin.com
· New mobile apps to access your BlackArmor NAS from your smartphone or tablet.

Issues addressed:
· Implemented security improvement for php
· Static IP address filter removed
· Improvements to DLNA aimed at the support of MKV files
· .TB hidden folders can now be deleted
· FTP over SSL in FileZilla process improvements
· iTunes compatibility

Vendor References

http://www.seagate.com/support/external-hard-drives/network-storage/blackarmor-nas-110/
http://www.seagate.com/support/external-hard-drives/network-storage/blackarmor-nas-220/
http://www.seagate.com/support/external-hard-drives/network-storage/blackarmor-nas-440/
http://forums.seagate.com/t5/BlackArmor-NAS-Network-Storage/Announcement-New-limited-release-firmware-is-available-for-all/td-p/164862

Addendum

There are no additional comments at this time.

If you have feedback, comments, or additional information about this vulnerability, please send us email.