CVE-2025-30248: High severity Western Digital WD Discovery vulnerability
DLL hijacking in the WD Discovery Installer in Western Digital WD Discovery 5.2.730 on Windows allows a local attacker to execute arbitrary code via placement of a crafted dll in the installer's search path.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30248?
CVE-2025-30248 has been classified as a medium severity vulnerability due to its potential for local code execution.
How do I fix CVE-2025-30248?
To fix CVE-2025-30248, update to the latest version of Western Digital WD Discovery or apply the relevant security patches provided by the vendor.
Who is affected by CVE-2025-30248?
CVE-2025-30248 affects users of Western Digital WD Discovery version 5.2.730 on Windows.
What is the impact of CVE-2025-30248?
The impact of CVE-2025-30248 allows an attacker to execute arbitrary code on the affected system via DLL hijacking.
Is there a known exploit for CVE-2025-30248?
As of now, there is no publicly reported exploit for CVE-2025-30248, but the vulnerability is exploitable under certain conditions.