CVE-2020-8990: Critical severity Western Digital ibi vulnerability
Western Digital My Cloud Home before 3.6.0 and ibi before 3.6.0 allow Session Fixation.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Western Digital My Cloud Hometo a version that resolves this vulnerability.Fixed in 3.6.0 - Upgrade
Upgrade
ibito a version that resolves this vulnerability.Fixed in 3.6.0
Event History
Frequently Asked Questions
What is CVE-2020-8990?
CVE-2020-8990 is a vulnerability that allows session fixation in Western Digital My Cloud Home and ibi before version 3.6.0.
How severe is CVE-2020-8990?
CVE-2020-8990 has a severity rating of 9.1 (critical).
Which software versions are affected by CVE-2020-8990?
CVE-2020-8990 affects Western Digital My Cloud Home and ibi versions up to and excluding 3.6.0.
How can I fix CVE-2020-8990?
To fix CVE-2020-8990, you should update your Western Digital My Cloud Home or ibi to version 3.6.0 or higher.
Where can I find more information about CVE-2020-8990?
You can find more information about CVE-2020-8990 at the following references: [link1](https://support.wdc.com/downloads.aspx?g=907&lang=en#downloads) and [link2](https://www.westerndigital.com/support/productsecurity/wdc-19013-my-cloud-home-and-ibi-session-invalidation-vulnerability).