CVE-2022-22997
12.07.2022, 21:15
Addressed a remote code execution vulnerability by resolving a command injection vulnerability and closing an AWS S3 bucket that potentially allowed an attacker to execute unsigned code on My Cloud Home devices.
Vendor | Product | Version |
---|---|---|
westerndigital | my_cloud_home_duo_firmware | 𝑥 < 8.5.1-102 |
westerndigital | my_cloud_home_firmware | 𝑥 < 8.5.1-102 |
𝑥
= Vulnerable software versions