A command injection vulnerability in the DDNS service configuration of Western Digital My Cloud OS 5 devices running firmware versions prior to 5.26.119 allows an attacker to execute code in the context of the root user.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WDC PSIRT

Published: 2023-01-25T00:00:00

Updated: 2024-08-03T06:33:42.818Z

Reserved: 2022-04-27T00:00:00

Link: CVE-2022-29843

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-01-26T21:15:33.577

Modified: 2023-02-01T16:47:13.087

Link: CVE-2022-29843

cve-icon Redhat

No data.