Synology DiskStation Manager Unified Controller (DSM UC)

CPE Details

Synology DiskStation Manager Unified Controller (DSM UC)
-
2021-06-29
11h53 +00:00
2021-08-17
12h49 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:synology:diskstation_manager_unified_controller:-:*:*:*:*:*:*:*

Informations

Vendor

synology

Product

diskstation_manager_unified_controller

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-22687 2022-03-25
06h55 +00:00
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in Authentication functionality in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to execute arbitrary code via unspecified vectors.
9.8
Critical
CVE-2021-29084 2021-06-23
09h55 +00:00
Improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability in Security Advisor report management component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to read arbitrary files via unspecified vectors.
7.5
High
CVE-2021-29085 2021-06-23
09h55 +00:00
Improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability in file sharing management component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to read arbitrary files via unspecified vectors.
8.6
High
CVE-2021-29087 2021-06-23
09h55 +00:00
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to write arbitrary files via unspecified vectors.
7.5
High
CVE-2021-27649 2021-06-23
09h50 +00:00
Use after free vulnerability in file transfer protocol component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to execute arbitrary code via unspecified vectors.
9.8
Critical
CVE-2021-29086 2021-06-23
09h50 +00:00
Exposure of sensitive information to an unauthorized actor vulnerability in webapi component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to obtain sensitive information via unspecified vectors.
7.5
High