A path traversal vulnerability was addressed in Western Digital My Cloud Home, My Cloud Home Duo and SanDisk ibi which could allow an attacker to initiate installation of custom ZIP packages and overwrite system files. This could potentially lead to a code execution.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2022-34155 | A path traversal vulnerability was addressed in Western Digital My Cloud Home, My Cloud Home Duo and SanDisk ibi which could allow an attacker to initiate installation of custom ZIP packages and overwrite system files. This could potentially lead to a code execution. |
Fixes
Solution
The user's My Cloud Home, My Cloud Home Duo and ibi devices will be automatically updated to reflect the latest firmware version.
Workaround
No workaround given by the vendor.
References
History
Thu, 24 Apr 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: WDC PSIRT
Published:
Updated: 2025-04-24T20:12:31.109Z
Reserved: 2022-04-27T00:00:00.000Z
Link: CVE-2022-29837

Updated: 2024-08-03T06:33:42.797Z

Status : Modified
Published: 2022-12-01T17:15:11.290
Modified: 2024-11-21T06:59:47.207
Link: CVE-2022-29837

No data.

No data.