First published: Thu Oct 29 2020(Updated: )
An issue was discovered on Western Digital My Cloud NAS devices before 5.04.114. They allow remote code execution with resultant escalation of privileges.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
westerndigital My Cloud firmware | <5.04.114 | |
westerndigital My Cloud ex2 ultra | ||
westerndigital My Cloud ex4100 | ||
Western Digital My Cloud Mirror Gen2 | ||
westerndigital My Cloud pr2100 | ||
westerndigital My Cloud pr4100 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-27744 is a vulnerability found on Western Digital My Cloud NAS devices before version 5.04.114.
The severity of CVE-2020-27744 is critical with a CVSS score of 9.8.
CVE-2020-27744 allows remote code execution by exploiting a vulnerability on Western Digital My Cloud NAS devices.
Yes, CVE-2020-27744 can result in the escalation of privileges.
To fix CVE-2020-27744, it is recommended to update to version 5.04.114 of the Western Digital My Cloud firmware.