Published: 20/02/2020 Updated: 02/09/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Western Digital mycloud.com before Web Version 2.2.0-134 allows XSS.

Most Upvoted Vulmon Research Post

There is no Researcher post for this vulnerability
Would you like to share something about it? Sign up now to share your knowledge with the community.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

westerndigital mycloud.com

Github Repositories

Security bulletins Date ID Subject Affected versions 2021 January 19 WDC-21001 Reflected XSS in WD My Cloud, My Cloud Home and SanDisk ibi <,4130) 2020 February 21 WDC-20003, CVE-2020-8960 Reflected DOM-based XSS <,220-134) 2019 November 30 CVE-2019-12417 Apache Airflow XSS and Local File Read <,1105> 2016 March 29 Ninja forms arb