Western Digital encountered a Zero-day vulnerability that has been identified as CVE-2021-35941. Many customers of Western Digitals My Book Live had discovered a deletion of files and backups, along with the network storage appliance factory reset. According to the investigation, the experts opined that this vulnerability enabled via remote administration consoles, and it most probably needed an admin to authenticate themselves to the device. The main motive of the threat actors for executing this vulnerability is that it will execute a command on the NAS device that will eventually download a script from a remote site.”]
Source: https://gbhackers.com/western-digital-my-book-zero-day-vulnerability/

