ZeroHour

CVE-2020-28940

CVSS 3.1
9.8 critical
EPSS
4%p90
Published
()
Modified
Description

On Western Digital My Cloud OS 5 devices before 5.06.115, the NAS Admin dashboard has an authentication bypass vulnerability that could allow an unauthenticated user to execute privileged commands on the device.

Vendors
westerndigital
Products
my cloud os 5
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.