Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 5.3
CVE-2022-23001
When compressing or decompressing elliptic curve points using the Sweet B library, an incorrect choice of sign bit is used. An attacker with user lev…
Sweet B
Mitigation only
MEDIUM 5.3
CVE-2022-23002
When compressing or decompressing a point on the NIST P-256 elliptic curve with an X coordinate of zero, the resulting output is not properly reduced…
Sweet B
Mitigation only
MEDIUM 5.3
CVE-2022-23003
When computing a shared secret or point multiplication on the NIST P-256 curve that results in an X coordinate of zero, the resulting output is not p…
Sweet B
Mitigation only
MEDIUM 5.3
CVE-2022-23004
When computing a shared secret or point multiplication on the NIST P-256 curve using a public key with an X coordinate of zero, an error is returned …
Sweet B
Mitigation only
HIGH 7.5
CVE-2021-35941EPSS 13%
Western Digital WD My Book Live (2.x and later) and WD My Book Live Duo (all versions) have an administrator API that can perform a system factory re…
Wd My Book Live Firmware
No fix yet
HIGH 7.5
CVE-2019-10705
Western Digital SanDisk X600 devices in certain configurations, a vulnerability in the access control mechanism of the drive may allow data to be dec…
Sandisk X600 Sd9tb8w 128g Firmware
Mitigation only
MEDIUM 6.3
CVE-2019-10706
Western Digital SanDisk SanDisk X300, X300s, X400, and X600 devices: The firmware update authentication method relies on a symmetric HMAC digest. The…
Sandisk X600 Sd9tb8w 128g Firmware
Mitigation only
MEDIUM 5.5
CVE-2019-11686
Western Digital SanDisk X300, X300s, X400, and X600 devices: A vulnerability in the wear-leveling algorithm of the drive may cause cryptographically …
Sandisk X600 Sd9tb8w 128g Firmware
Mitigation only
CRITICAL 9.8
CVE-2018-18472EPSS 30%
Western Digital WD My Book Live and WD My Book Live Duo (all versions) have a root Remote Command Execution bug via shell metacharacters in the /api/…
My Book Live Firmware
Mitigation only
CRITICAL 9.8
CVE-2018-1151EPSS 8%
The web server on Western Digital TV Media Player 1.03.07 and TV Live Hub 3.12.13 allow unauthenticated remote attackers to execute arbitrary code or…
Tv Live Hub Firmware
No fix yet
CRITICAL 9.8
CVE-2018-9148
Western Digital WD My Cloud v04.05.00-320 devices embed the session token (aka PHPSESSID) in filenames, which makes it easier for attackers to bypass…
My Cloud Firmware
No fix yet
MEDIUM 5.4
CVE-2014-5876
The WD My Cloud (aka com.wdc.wd2go) application 4.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle…
Wd My Cloud
Mitigation only