Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-22992

A command injection remote code execution vulnerability was discovered on Western Digital My Cloud Devices that could allow an attacker to execute arbitrary system commands on the device. The vulnerability was addressed by escaping individual arguments to shell functions coming from user input.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 70.5%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 10.0
Products affected by CVE-2022-22992


Contact Us

Shodan ® - All rights reserved