Loading HuntDB...

GHSA-5fx6-86fq-8xxf

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

A post-authentication remote command injection vulnerability in a CGI file in Western Digital My Cloud OS 5 devices that could allow an attacker to build files with redirects and execute larger payloads.
This issue affects My Cloud OS 5 devices: before 5.26.300.

Related CVEs

Key Information

GHSA ID
GHSA-5fx6-86fq-8xxf
Published
July 1, 2023 12:30 AM
Last Modified
April 4, 2024 5:19 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 12, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.