Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6r45-66xq-p89w

Опубликовано: 26 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A vulnerability in the FTP service of Western Digital My Cloud OS 5 devices running firmware versions prior to 5.26.119 allows an attacker to read and write arbitrary files. This could lead to a full NAS compromise and would give remote execution capabilities to the attacker.

A vulnerability in the FTP service of Western Digital My Cloud OS 5 devices running firmware versions prior to 5.26.119 allows an attacker to read and write arbitrary files. This could lead to a full NAS compromise and would give remote execution capabilities to the attacker.

EPSS

Процентиль: 98%
0.58541
Средний

9.8 Critical

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.7
nvd
около 3 лет назад

A vulnerability in the FTP service of Western Digital My Cloud OS 5 devices running firmware versions prior to 5.26.119 allows an attacker to read and write arbitrary files. This could lead to a full NAS compromise and would give remote execution capabilities to the attacker.

CVSS3: 9.8
fstec
около 3 лет назад

Уязвимость службы FTP операционных систем сетевых хранилищ My Cloud OS, позволяющая нарушителю получить полный доступ к устройству и выполнить произвольный код

EPSS

Процентиль: 98%
0.58541
Средний

9.8 Critical

CVSS3

Дефекты

CWE-22