June 30, 2023, 10:15 p.m. |

National Vulnerability Database web.nvd.nist.gov

Post-authentication remote command injection vulnerabilities in Western Digital My Cloud OS 5 devices that could allow an attacker to execute code in the context of the root user on vulnerable CGI files.



This issue affects My Cloud OS 5 devices: before 5.26.300.

authentication cloud code command command injection context cve devices digital files injection issue my cloud my cloud os root vulnerabilities vulnerable western western digital western digital my cloud

Azure DevSecOps Cloud Engineer II

@ Prudent Technology | McLean, VA, USA

Security Engineer III - Python, AWS

@ JPMorgan Chase & Co. | Bengaluru, Karnataka, India

SOC Analyst (Threat Hunter)

@ NCS | Singapore, Singapore

Managed Services Information Security Manager

@ NTT DATA | Sydney, Australia

Senior Security Engineer (Remote)

@ Mattermost | United Kingdom

Penetration Tester (Part Time & Remote)

@ TestPros | United States - Remote