Western Digital WD Discovery DLL Hijacking Vulnerability

Vulnerability

A DLL hijacking vulnerability has been identified in the WD Discovery Installer for Western Digital WD Discovery version 5.2.730 on Windows. This vulnerability allows a local attacker to execute arbitrary code by placing a crafted DLL in the installer's search path.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution on the affected system.

Remediation

Users can update to WD Discovery version 5.3, which addresses this vulnerability. The latest version can be downloaded from the WD Discovery Downloads page or by following the instructions in the WD Discovery Online User Guide.

Added: Jan 26, 2026, 11:25 PM
Updated: Jan 26, 2026, 11:25 PM

Vulnerability Rating

Custom Algorithm
spread
5.4
impact
10.0
exploitability
2.4
remediation
7.7
relevance
2.3
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.