Seagate NAS OS 4.3.15.1 contains an open redirect vulnerability in echo-server.html, which can allow an attacker to disclose information in the referer header via the state URL parameter.
View the template here CVE-2018-12300.yaml
References:
https://nvd.nist.gov/vuln/detail/CVE-2018-12300