CVE-2020-15816: Westerndigital Wd Discovery
High severity, CVSS 8.8. EPSS: 4.1% chance of exploitation in the next 30 days.
In Western Digital WD Discovery before 4.0.251.0, a malicious application running with standard user permissions could potentially execute code in the application's process through library injection by using DYLD environment variables.
Affected products
- Westerndigital Wd Discovery: before 4.0.251.0 (fixed in 4.0.251.0)
Published 2020-07-17. Last modified 2026-06-17.