VYPR

Vendor CVEs

Westerndigital

All CVEs

97 total · sorted by risk
  • CVE-2020-29654HigDec 12, 2020
    risk 0.51cvss 7.8epss 0.00

    Western Digital Dashboard before 3.2.2.9 allows DLL Hijacking that leads to compromise of the SYSTEM account.

  • CVE-2020-8959HigFeb 19, 2020
    risk 0.51cvss 7.8epss 0.00

    Western Digital WesternDigitalSSDDashboardSetup.exe before 3.0.2.0 allows DLL Hijacking.

  • CVE-2022-22988HigJan 13, 2022
    risk 0.50cvss 7.7epss 0.01

    File and directory permissions have been corrected to prevent unintended users from modifying or accessing resources. It would be more difficult for an authenticated attacker to now traverse through the files and directories. This can only be exploited once an attacker has…

  • CVE-2021-35941HigJun 29, 2021
    risk 0.50cvss 7.5epss 0.13

    Western Digital WD My Book Live (2.x and later) and WD My Book Live Duo (all versions) have an administrator API that can perform a system factory restore without authentication, as exploited in the wild in June 2021, a different vulnerability than CVE-2018-18472.

  • CVE-2019-10705HigMar 10, 2020
    risk 0.49cvss 7.5epss 0.01

    Western Digital SanDisk X600 devices in certain configurations, a vulnerability in the access control mechanism of the drive may allow data to be decrypted without knowledge of proper authentication credentials.

  • CVE-2019-13466HigSep 30, 2019
    risk 0.49cvss 7.5epss 0.01

    Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 have Incorrect Access Control. The “generate reports” archive is protected with a hard-coded password. An application update that addresses the protection of archive encryption is available.

  • CVE-2023-22812HigMar 24, 2023
    risk 0.48cvss 7.4epss 0.00

    SanDisk PrivateAccess versions prior to 6.4.9 support insecure TLS 1.0 and TLS 1.1 protocols which are susceptible to man-in-the-middle attacks thereby compromising confidentiality and integrity of data.

  • CVE-2023-22818HigNov 15, 2023
    risk 0.47cvss 7.3epss 0.00

    Multiple DLL Search Order Hijack vulnerabilities were addressed in the SanDisk Security Installer for Windows that could allow attackers with local access to execute arbitrary code by executing the installer in the same folder as the malicious DLL. This can lead to the…

  • CVE-2022-23000HigJul 25, 2022
    risk 0.47cvss 7.3epss 0.00

    The Western Digital My Cloud Web App [https://os5.mycloud.com/] uses a weak SSLContext when attempting to configure port forwarding rules. This was enabled to maintain compatibility with old or outdated home routers. By using an "SSL" context instead of "TLS" or specifying…

  • CVE-2022-29844MedJan 26, 2023
    risk 0.46cvss 6.7epss 0.36

    A vulnerability in the FTP service of Western Digital My Cloud OS 5 devices running firmware versions prior to 5.26.119 allows an attacker to read and write arbitrary files. This could lead to a full NAS compromise and would give remote execution capabilities to the attacker.

  • CVE-2025-57699MedAug 22, 2025
    risk 0.44cvss 6.7epss 0.00

    Western Digital Kitfox for Windows provided by Western Digital Corporation registers a Windows service with an unquoted file path. A user with the write permission on the root directory of the system drive may execute arbitrary code with the SYSTEM privilege.

  • CVE-2022-22997MedJul 12, 2022
    risk 0.44cvss 6.8epss 0.01

    Addressed a remote code execution vulnerability by resolving a command injection vulnerability and closing an AWS S3 bucket that potentially allowed an attacker to execute unsigned code on My Cloud Home devices.

  • CVE-2020-13799MedNov 18, 2020
    risk 0.44cvss 6.8epss 0.00

    Western Digital has identified a security vulnerability in the Replay Protected Memory Block (RPMB) protocol as specified in multiple standards for storage device interfaces, including all versions of eMMC, UFS, and NVMe. The RPMB protocol is specified by industry standards…

  • CVE-2021-28653MedMar 19, 2021
    risk 0.42cvss 6.5epss 0.01

    The iOS and macOS apps before 1.4.1 for the Western Digital G-Technology ArmorLock NVMe SSD store keys insecurely. They choose a non-preferred storage mechanism if the device has Secure Enclave support but lacks biometric authentication hardware.

  • CVE-2019-10706MedMar 10, 2020
    risk 0.41cvss 6.3epss 0.00

    Western Digital SanDisk SanDisk X300, X300s, X400, and X600 devices: The firmware update authentication method relies on a symmetric HMAC digest. The key used to validate this digest is present in a protected area of the device, and if extracted could be used to install…

  • CVE-2023-22815MedJun 30, 2023
    risk 0.40cvss 6.2epss 0.01

    Post-authentication remote command injection vulnerability in Western Digital My Cloud OS 5 devices that could allow an attacker to execute code in the context of the root user on vulnerable CGI files. This vulnerability can only be exploited over the network and the attacker…

  • CVE-2022-29843MedJan 26, 2023
    risk 0.40cvss 6.2epss 0.01

    A command injection vulnerability in the DDNS service configuration of Western Digital My Cloud OS 5 devices running firmware versions prior to 5.26.119 allows an attacker to execute code in the context of the root user.

  • CVE-2020-8960MedFeb 20, 2020
    risk 0.40cvss 6.1epss 0.01

    Western Digital mycloud.com before Web Version 2.2.0-134 allows XSS.

  • CVE-2023-22816MedJun 30, 2023
    risk 0.39cvss 6.0epss 0.01

    A post-authentication remote command injection vulnerability in a CGI file in Western Digital My Cloud OS 5 devices that could allow an attacker to build files with redirects and execute larger payloads. This issue affects My Cloud OS 5 devices: before 5.26.300.

  • CVE-2024-22168MedJun 24, 2024
    risk 0.38cvss epss 0.00

    A Cross-Site Scripting (XSS) vulnerability on the My Cloud, My Cloud Home, SanDisk ibi, and WD Cloud web apps was found which could allow an attacker to redirect the user to a crafted domain and reset their credentials, or to execute arbitrary client-side code in the user’s…

  • CVE-2022-36328MedMay 18, 2023
    risk 0.38cvss 5.8epss 0.01

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could allow an attacker to create arbitrary shares on arbitrary directories and exfiltrate sensitive files, passwords, users and device configurations was discovered in Western…

  • CVE-2022-36327MedMay 18, 2023
    risk 0.38cvss 5.8epss 0.01

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could allow an attacker to write files to locations with certain critical filesystem types leading to remote code execution was discovered in Western Digital My Cloud Home, My Cloud…

  • CVE-2019-13467MedSep 30, 2019
    risk 0.38cvss 5.9epss 0.02

    Description: Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 applications are potentially vulnerable to man-in-the-middle attacks when the applications download resources from the Dashboard web service. This vulnerability may allow an…

  • CVE-2023-22817MedFeb 5, 2024
    risk 0.36cvss 5.5epss 0.00

    Server-side request forgery (SSRF) vulnerability that could allow a rogue server on the local network to modify its URL using another DNS address to point back to the loopback adapter. This could then allow the URL to exploit other vulnerabilities on the local server. This was…

  • CVE-2019-11686MedMar 10, 2020
    risk 0.36cvss 5.5epss 0.00

    Western Digital SanDisk X300, X300s, X400, and X600 devices: A vulnerability in the wear-leveling algorithm of the drive may cause cryptographically sensitive parameters (such as data encryption keys) to remain on the drive media after their intended erasure.

  • CVE-2022-29835MedSep 19, 2022
    risk 0.34cvss 5.3epss 0.00

    WD Discovery software executable files were signed with an unsafe SHA-1 hashing algorithm. An attacker could use this weakness to create forged certificate signatures due to the use of a hashing algorithm that is not collision-free. This could thereby impact the confidentiality…

  • CVE-2022-23004MedJul 29, 2022
    risk 0.34cvss 5.3epss 0.01

    When computing a shared secret or point multiplication on the NIST P-256 curve using a public key with an X coordinate of zero, an error is returned from the library, and an invalid unreduced value is written to the output buffer. This may be leveraged by an attacker to cause an…

  • CVE-2022-23003MedJul 29, 2022
    risk 0.34cvss 5.3epss 0.01

    When computing a shared secret or point multiplication on the NIST P-256 curve that results in an X coordinate of zero, the resulting output is not properly reduced modulo the P-256 field prime and is invalid. The resulting output may cause an error when used in other…

  • CVE-2022-23002MedJul 29, 2022
    risk 0.34cvss 5.3epss 0.01

    When compressing or decompressing a point on the NIST P-256 elliptic curve with an X coordinate of zero, the resulting output is not properly reduced modulo the P-256 field prime and is invalid. The resulting output will cause an error when used in other operations. This may be…

  • CVE-2022-23001MedJul 29, 2022
    risk 0.34cvss 5.3epss 0.01

    When compressing or decompressing elliptic curve points using the Sweet B library, an incorrect choice of sign bit is used. An attacker with user level privileges and no other user's assistance can exploit this vulnerability with only knowledge of the public key and the library.…

  • CVE-2022-29840MedMay 10, 2023
    risk 0.33cvss 5.1epss 0.00

    Server-Side Request Forgery (SSRF) vulnerability that could allow a rogue server on the local network to modify its URL to point back to the loopback adapter was addressed in Western Digital My Cloud OS 5 devices. This could allow the URL to exploit other vulnerabilities on the…

  • CVE-2023-22819MedFeb 5, 2024
    risk 0.32cvss 4.9epss 0.01

    An uncontrolled resource consumption vulnerability issue that could arise by sending crafted requests to a service to consume a large amount of memory, eventually resulting in the service being stopped and restarted was discovered in Western Digital My Cloud Home, My Cloud Home…

  • CVE-2022-29837MedDec 1, 2022
    risk 0.31cvss 4.7epss 0.00

    A path traversal vulnerability was addressed in Western Digital My Cloud Home, My Cloud Home Duo and SanDisk ibi which could allow an attacker to initiate installation of custom ZIP packages and overwrite system files. This could potentially lead to a code execution.

  • CVE-2020-10951MedApr 15, 2020
    risk 0.31cvss 4.7epss 0.01

    Western Digital My Cloud Home and ibi devices before 2.2.0 allow clickjacking on sign-in pages.

  • CVE-2018-7928MedOct 9, 2018
    risk 0.30cvss 4.6epss 0.00

    There is a security vulnerability which could lead to Factory Reset Protection (FRP) bypass in the MyCloud APP with the versions before 8.1.2.303 installed on some Huawei smart phones. When re-configuring the mobile phone using the FRP function, an attacker can replace the old…

  • CVE-2022-36326MedMay 18, 2023
    risk 0.29cvss 4.4epss 0.01

    An uncontrolled resource consumption vulnerability issue that could arise by sending crafted requests to a service to consume a large amount of memory, eventually resulting in the service being stopped and restarted was discovered in Western Digital My Cloud Home, My Cloud Home…

  • CVE-2022-36329MedMay 10, 2023
    risk 0.29cvss 4.4epss 0.00

    An improper privilege management issue that could allow an attacker to cause a denial of service over the OTA mechanism was discovered in Western Digital My Cloud Home, My Cloud Home Duo and SanDisk ibi devices.This issue affects My Cloud Home and My Cloud Home Duo: before…

  • CVE-2022-29838MedDec 9, 2022
    risk 0.28cvss 4.3epss 0.00

    Improper Authentication vulnerability in the encrypted volumes and auto mount features of Western Digital My Cloud devices allows insecure direct access to the drive information in the case of a device reset. This issue affects: Western Digital My Cloud My Cloud versions prior…

  • CVE-2022-29839MedDec 9, 2022
    risk 0.27cvss 4.1epss 0.00

    Insufficiently Protected Credentials vulnerability in the remote backups application on Western Digital My Cloud devices that could allow an attacker who has gained access to a relevant endpoint to use that information to access protected data. This issue affects: Western…

  • CVE-2023-22813LowMay 8, 2023
    risk 0.21cvss 3.3epss 0.00

    A device API endpoint was missing access controls on Western Digital My Cloud OS 5 iOS and Anroid Mobile Apps, My Cloud Home iOS and Android Mobile Apps, SanDisk ibi iOS and Android Mobile Apps, My Cloud OS 5 Web App, My Cloud Home Web App and the SanDisk ibi Web App.…

  • CVE-2022-36330LowMay 10, 2023
    risk 0.12cvss 1.9epss 0.01

    A buffer overflow vulnerability was discovered on firmware version validation that could lead to an unauthenticated remote code execution in Western Digital My Cloud Home, My Cloud Home Duo and SanDisk ibi devices. An attacker would require exploitation of another vulnerability…

  • CVE-2022-29836LowNov 9, 2022
    risk 0.12cvss 1.9epss 0.00

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability was discovered via an HTTP API on Western Digital My Cloud Home; My Cloud Home Duo; and SanDisk ibi devices that could allow an attacker to abuse certain parameters to point to random…

  • CVE-2022-23006LowSep 27, 2022
    risk 0.12cvss 1.8epss 0.00

    A stack-based buffer overflow vulnerability was found on Western Digital My Cloud Home, My Cloud Home Duo, and SanDisk ibi that could allow an attacker accessing the system locally to read information from /etc/version file. This vulnerability can only be exploited by chaining…

  • CVE-2015-7709Oct 5, 2015
    risk 0.09cvss epss 0.79

    The arkeiad daemon in the Arkeia Backup Agent in Western Digital Arkeia 11.0.12 and earlier allows remote attackers to bypass authentication and execute arbitrary commands via a series of crafted requests involving the ARKFS_EXEC_CMD operation.

  • CVE-2014-2846Apr 28, 2014
    risk 0.04cvss epss 0.09

    Directory traversal vulnerability in opt/arkeia/wui/htdocs/index.php in the WD Arkeia virtual appliance (AVA) with firmware before 10.2.9 allows remote attackers to read arbitrary files and execute arbitrary PHP code via a ..././ (dot dot dot slash dot slash) in the lang Cookie…

  • CVE-2013-5006Jul 31, 2013
    risk 0.03cvss epss 0.05

    main_internet.php on the Western Digital My Net N600 and N750 with firmware 1.03.12 and 1.04.16, and the N900 and N900C with firmware 1.05.12, 1.06.18, and 1.06.28, allows remote attackers to discover the cleartext administrative password by reading the "var pass=" line within…

  • CVE-2014-5876Sep 11, 2014
    risk 0.00cvss epss 0.00

    The WD My Cloud (aka com.wdc.wd2go) application 4.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

Page 2 of 2