Synology DiskStation Manager 6.2.1

CPE Details

Synology DiskStation Manager 6.2.1
6.2.1
2019-06-10
10h32 +00:00
2025-01-14
18h29 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:synology:diskstation_manager:6.2.1:*:*:*:*:*:*:*

Informations

Vendor

synology

Product

diskstation_manager

Version

6.2.1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-27610 2022-07-27 08h00 +00:00 Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Synology DiskStation Manager (DSM) before 6.2.3-25423 allows remote authenticated users to delete arbitrary files via unspecified vectors.
8.1
High
CVE-2021-44142 2022-02-21 14h30 +00:00 The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfs_fruit configured allow out-of-bounds heap read and write via specially crafted extended file attributes. A remote attacker with write access to extended file attributes can execute arbitrary code with the privileges of smbd, typically root.
8.8
High