← Back to browse · API

CVE-2023-22814

Severity
CRITICAL
CVSS
10.0
EPSS
0.00687
Risk score
40.24
CISA KEV
No
PoC
No
Published
2023-06-30
Modified
2024-11-26
First seen
2026-08-07
Aliases
EUVD-2023-26926, GHSA-VH8R-VPP8-MFQ5
Products
Western Digital:My Cloud OS 5 0 <5.26.202
Sources
euvd EUVD-2023-26926

Description

An authentication bypass issue via spoofing was discovered in the token-based authentication mechanism that could allow an attacker to carry out an impersonation attack. This issue affects My Cloud OS 5 devices: before 5.26.202.

References