Authentication Bypass issue in My Cloud OS 5 devices
CVE-2023-22814

10CRITICAL

Key Information:

Vendor
CVE Published:
1 July 2023

What is CVE-2023-22814?

A critical authentication bypass vulnerability has been identified in the token-based authentication mechanism of My Cloud OS 5 devices. This flaw allows attackers to exploit the system through spoofing techniques, potentially allowing them to impersonate legitimate users. Devices running versions prior to 5.26.202 are particularly susceptible, making it essential for users to promptly update their firmware to mitigate the risk of unauthorized access. Regular monitoring and proactive security measures are strongly recommended to safeguard sensitive data.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

My Cloud OS 5 Linux 0 < 5.26.202

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.