An authentication bypass issue via spoofing was discovered in the token-based authentication mechanism that could allow an attacker to carry out an impersonation attack. This issue affects My Cloud OS 5 devices: before 5.26.202.
2023-07-01T00:15:09.970
2024-11-21T07:45:28.200
Modified
CVSSv3.1: 10.0 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | westerndigital | my_cloud_os | < 5.26.202 | Yes |
Hardware | westerndigital | my_cloud | - | No |
Hardware | westerndigital | my_cloud_dl2100 | - | No |
Hardware | westerndigital | my_cloud_dl4100 | - | No |
Hardware | westerndigital | my_cloud_ex2_ultra | - | No |
Hardware | westerndigital | my_cloud_ex2100 | - | No |
Hardware | westerndigital | my_cloud_ex4100 | - | No |
Hardware | westerndigital | my_cloud_mirror_g2 | - | No |
Hardware | westerndigital | my_cloud_pr2100 | - | No |
Hardware | westerndigital | my_cloud_pr4100 | - | No |
Hardware | westerndigital | wd_cloud | - | No |