Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cqwg-qq7j-c4fr

Опубликовано: 09 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

Improper Authentication vulnerability in the encrypted volumes and auto mount features of Western Digital My Cloud devices allows insecure direct access to the drive information in the case of a device reset. This issue affects: Western Digital My Cloud My Cloud versions prior to 5.25.124 on Linux.

Improper Authentication vulnerability in the encrypted volumes and auto mount features of Western Digital My Cloud devices allows insecure direct access to the drive information in the case of a device reset. This issue affects: Western Digital My Cloud My Cloud versions prior to 5.25.124 on Linux.

EPSS

Процентиль: 37%
0.00155
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 4.3
nvd
около 3 лет назад

Improper Authentication vulnerability in the encrypted volumes and auto mount features of Western Digital My Cloud devices allows insecure direct access to the drive information in the case of a device reset. This issue affects: Western Digital My Cloud My Cloud versions prior to 5.25.124 on Linux.

EPSS

Процентиль: 37%
0.00155
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-287