CVE-2020-29563: Westerndigital My Cloud OS 5
Critical severity, CVSS 9.8. EPSS: 2.9% chance of exploitation in the next 30 days.
An issue was discovered on Western Digital My Cloud OS 5 devices before 5.07.118. A NAS Admin authentication bypass vulnerability could allow an unauthenticated user to gain access to the device.
Affected products
- Westerndigital My Cloud OS 5: before 5.07.118 (fixed in 5.07.118)
Published 2020-12-12. Last modified 2026-06-17.