Critical severity9.8NVD Advisory· Published Jan 3, 2017· Updated May 6, 2026
CVE-2016-10108
CVE-2016-10108
Description
Unauthenticated Remote Command injection as root occurs in the Western Digital MyCloud NAS 2.11.142 /web/google_analytics.php URL via a modified arg parameter in the POST data.
Affected products
1- cpe:2.3:a:western_digital:mycloud_nas:2.11.142:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.