Fiche vulnérabilité
CVE-2022-36331 : faille élevée westerndigital my cloud pr2100 firmware (CVSS 7.5)
Description
Western Digital My Cloud, My Cloud Home, My Cloud Home Duo, and SanDisk ibi devices were vulnerable to an impersonation attack that could allow an unauthenticated attacker to gain access to user data. This issue affects My Cloud OS 5 devices: before 5.25.132; My Cloud Home and My Cloud Home Duo: before 8.13.1-102; SanDisk ibi: before 8.13.1-102.
En bref
- Sévérité
- Élevée (CVSS 7.5)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 12 juin 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- westerndigital my cloud pr2100 firmware
- westerndigital my cloud pr4100 firmware
- westerndigital my cloud ex4100 firmware
- westerndigital my cloud ex2 ultra firmware
- westerndigital my cloud mirror g2 firmware
- westerndigital my cloud dl2100 firmware
- westerndigital my cloud dl4100 firmware
- westerndigital my cloud ex2100 firmware
- westerndigital my cloud home firmware
- westerndigital my cloud home duo firmware
- westerndigital sandisk ibi firmware
- westerndigital my cloud firmware