First published: Wed Apr 15 2020(Updated: )
Western Digital My Cloud Home and ibi devices before 2.2.0 allow clickjacking on sign-in pages.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Westerndigital Ibi | <2.2.0 | |
Westerndigital My Cloud Home | <2.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2020-10951.
The severity level of CVE-2020-10951 is medium with a score of 4.7.
Western Digital My Cloud Home and ibi devices before version 2.2.0 are affected by CVE-2020-10951.
Clickjacking is a technique where an attacker tricks a user into clicking on a malicious link or button, potentially allowing the attacker to perform unauthorized actions on the user's behalf.
To fix the clickjacking vulnerability, you should update your Western Digital My Cloud Home and ibi devices to version 2.2.0 or higher.