Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f3c6-qvcg-m7qv

Опубликовано: 26 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A command injection vulnerability in the DDNS service configuration of Western Digital My Cloud OS 5 devices running firmware versions prior to 5.26.119 allows an attacker to execute code in the context of the root user.

A command injection vulnerability in the DDNS service configuration of Western Digital My Cloud OS 5 devices running firmware versions prior to 5.26.119 allows an attacker to execute code in the context of the root user.

EPSS

Процентиль: 77%
0.01007
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 6.2
nvd
около 3 лет назад

A command injection vulnerability in the DDNS service configuration of Western Digital My Cloud OS 5 devices running firmware versions prior to 5.26.119 allows an attacker to execute code in the context of the root user.

EPSS

Процентиль: 77%
0.01007
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-78