{"id":7297,"date":"2025-09-30T10:03:53","date_gmt":"2025-09-30T10:03:53","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2025\/09\/30\/critical-western-digital-my-cloud-nas-vulnerability-allows-remote-code-execution\/"},"modified":"2025-09-30T10:03:53","modified_gmt":"2025-09-30T10:03:53","slug":"critical-western-digital-my-cloud-nas-vulnerability-allows-remote-code-execution","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2025\/09\/30\/critical-western-digital-my-cloud-nas-vulnerability-allows-remote-code-execution\/","title":{"rendered":"Critical Western Digital My Cloud NAS Vulnerability Allows Remote Code Execution"},"content":{"rendered":"<p>    Critical Western Digital My Cloud NAS Vulnerability Allows Remote Code Execution<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>Western Digital has released security updates for a critical vulnerability affecting multiple My Cloud <a href=\"https:\/\/cybersecuritynews.com\/zyxel-nas-devices-vulnerable\/\" target=\"_blank\" rel=\"noreferrer noopener\">network-attached storage (NAS)<\/a> devices.<\/p>\n<p>The flaw, tracked as CVE-2025-30247, could allow a remote attacker to execute arbitrary code on vulnerable systems, potentially leading to a complete device takeover.<\/p>\n<p>The company addressed the high-severity issue in My Cloud Firmware version 5.31.108, which was released on September 24, 2025.<\/p>\n<p>A successful exploit of this remote code execution (RCE) vulnerability would enable an unauthenticated attacker to compromise the security of the NAS device.<\/p>\n<p>This could result in <a href=\"https:\/\/cybersecuritynews.com\/marks-spencer-cyber-attack\/\" target=\"_blank\" rel=\"noreferrer noopener\">data theft<\/a>, the deployment of malware or ransomware, or the integration of the compromised device into a botnet for use in further attacks.<\/p>\n<p>Given that NAS devices often store sensitive personal and business data, the impact of such a compromise could be severe.<\/p>\n<p>Western Digital has strongly urged all users to promptly update their devices to the latest firmware to mitigate the threat. The update can be applied directly through the firmware update notification within the device\u2019s administrative interface.<\/p>\n<p>The advisory credits security researcher w1th0ut for discovering and responsibly <a href=\"https:\/\/www.westerndigital.com\/support\/product-security\/wdc-25006-western-digital-my-cloud-os-5-firmware-5-31-108\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">reporting<\/a> the vulnerability, allowing the company to develop and issue a patch.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-affected-devices-and-mitigation\"><strong>Affected Devices and Mitigation<\/strong><\/h2>\n<p>The security update is crucial for a wide range of products in the My Cloud family. Western Digital has confirmed that the following devices are impacted and should be updated to firmware version 5.31.108 or later to be protected against CVE-2025-30247.<\/p>\n<ul class=\"wp-block-list\">\n<li>My Cloud PR2100<\/li>\n<li>My Cloud PR4100<\/li>\n<li>My Cloud EX4100<\/li>\n<li>My Cloud EX2 Ultra<\/li>\n<li>My Cloud Mirror Gen 2<\/li>\n<li>My Cloud DL2100<\/li>\n<li>My Cloud EX2100<\/li>\n<li>My Cloud DL4100<\/li>\n<li>My Cloud WDBCTLxxxxxx-10<\/li>\n<li>My Cloud<\/li>\n<\/ul>\n<p>This incident highlights the ongoing security risks associated with internet-connected storage devices. Threat actors frequently scan for and target unpatched NAS systems due to the valuable data they contain.<\/p>\n<p>Applying security patches as soon as they become available is one of the most effective measures users can take to protect their data from unauthorized access and <a href=\"https:\/\/cybersecuritynews.com\/tag\/cyberattacks\/\" target=\"_blank\" rel=\"noreferrer noopener\">cyberattacks<\/a>.<\/p>\n<p>Users are advised to review their device settings and ensure that automatic updates are enabled, where possible, to maintain security.<\/p>\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 94%,rgb(169,184,195) 100%)\"><strong>Follow us on <a href=\"https:\/\/news.google.com\/publications\/CAAqMggKIixDQklTR3dnTWFoY0tGV041WW1WeWMyVmpkWEpwZEhsdVpYZHpMbU52YlNnQVAB?hl=en-IN&amp;gl=IN&amp;ceid=IN:en\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Google News<\/a>, <a href=\"https:\/\/www.linkedin.com\/company\/cybersecurity-news\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">LinkedIn<\/a>, and <a href=\"https:\/\/x.com\/cyber_press_org\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">X<\/a> for daily cybersecurity updates. <a href=\"https:\/\/cybersecuritynews.com\/contact-us\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Contact us<\/a> to feature your stories.<\/strong><\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/western-digital-my-cloud-devices-vulnerability\/\">Critical Western Digital My Cloud NAS Vulnerability Allows Remote Code Execution<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Guru Baran<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/western-digital-my-cloud-devices-vulnerability\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Critical Western Digital My Cloud NAS Vulnerability Allows Remote Code Execution Western Digital has released security updates for a critical vulnerability affecting multiple My Cloud network-attached storage (NAS) devices. The flaw, tracked as CVE-2025-30247, could allow a remote attacker to execute arbitrary code on vulnerable systems, potentially leading to a complete device takeover. The company [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[129,63,131,648],"tags":[130],"class_list":["post-7297","post","type-post","status-publish","format-standard","hentry","category-cyber-security","category-cyber-security-news","category-vulnerability","category-vulnerability-news","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/7297"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=7297"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/7297\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=7297"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=7297"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=7297"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}