Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gm3j-wm5r-799c

Опубликовано: 29 янв. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A limited SSRF vulnerability was discovered on Western Digital My Cloud devices that could allow an attacker to impersonate a server and reach any page on the server by bypassing access controls. The vulnerability was addressed by creating a whitelist for valid parameters.

A limited SSRF vulnerability was discovered on Western Digital My Cloud devices that could allow an attacker to impersonate a server and reach any page on the server by bypassing access controls. The vulnerability was addressed by creating a whitelist for valid parameters.

EPSS

Процентиль: 18%
0.00057
Низкий

8.8 High

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 7.8
nvd
около 4 лет назад

A limited SSRF vulnerability was discovered on Western Digital My Cloud devices that could allow an attacker to impersonate a server and reach any page on the server by bypassing access controls. The vulnerability was addressed by creating a whitelist for valid parameters.

EPSS

Процентиль: 18%
0.00057
Низкий

8.8 High

CVSS3

Дефекты

CWE-918