A post-authentication remote command injection vulnerability in a CGI file in Western Digital My Cloud OS 5 devices that could allow an attacker to build files with redirects and execute larger payloads.
This issue affects My Cloud OS 5 devices: before 5.26.300.
Metrics
Affected Vendors & Products
References
History
Thu, 05 Sep 2024 23:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A post-authentication remote command injection vulnerability in a CGI file in Western Digital My Cloud OS 5 devices that could allow an attacker to build files with redirects and execute larger payloads. This issue affects My Cloud OS 5 devices: before 5.26.300. | A post-authentication remote command injection vulnerability in a CGI file in Western Digital My Cloud OS 5 devices that could allow an attacker to build files with redirects and execute larger payloads. This issue affects My Cloud OS 5 devices: before 5.26.300. |
Weaknesses | CWE-78 |
MITRE
Status: PUBLISHED
Assigner: WDC PSIRT
Published: 2023-06-30T21:01:16.209Z
Updated: 2024-09-09T14:39:16.112Z
Reserved: 2023-01-06T20:23:44.301Z
Link: CVE-2023-22816
Vulnrichment
Updated: 2024-08-02T10:20:31.058Z
NVD
Status : Modified
Published: 2023-06-30T22:15:09.883
Modified: 2024-11-21T07:45:28.480
Link: CVE-2023-22816
Redhat
No data.