Loading
SQL injection in folderViewSpecific.psp in Seagate NAS OS version 4.3.15.1 allows attackers to execute arbitrary SQL commands via the dirId URL parameter.
Use CWE-89, Seagate vendor hub and Nas Os product page to widen CVE-2018-12295 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2018-12301, CVE-2018-12298 and CVE-2018-12296 for nearby disclosures in the same product family.