CVE-2016-10108
Published Jan 3, 2017Unauthenticated Remote Command injection as root occurs in the Western Digital MyCloud NAS 2.11.142 /web/google_analytics.php URL via a modified arg parameter in the POST data.
- evidence mentions
- 2
- Buzz score
- 17.5
Vendor/product archive
2 CVEs tagged to western_digital / mycloud_nas — 2 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.
Unauthenticated Remote Command injection as root occurs in the Western Digital MyCloud NAS 2.11.142 /web/google_analytics.php URL via a modified arg parameter in the POST data.
Unauthenticated Remote Command injection as root occurs in the Western Digital MyCloud NAS 2.11.142 index.php page via a modified Cookie header.