logo

High-Severity Flaw in Western Digital Installer Opens Door to Code Execution

ID: 661f17fb-0dc4-5efc-98b9-4252874e07ce

STIX ID: report--661f17fb-0dc4-5efc-98b9-4252874e07ce

Feed Name: securityonline.info

Threat Score
70/100

Date Published: 2026-01-27

Date Updated: 2026-04-23

Author: Ddos

...
...

Western Digital released WD Discovery 5.3 to remediate CVE-2025-30248, a DLL hijacking vulnerability in the WD Discovery installer (v5.2.730) with a CVSS of 8.9; a local attacker placing a malicious DLL alongside the installer can cause the installer to load and execute arbitrary code with installer/administrative privileges, and users are urged to upgrade immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.