6.8
CVE-2015-2851
- EPSS 0.11%
- Veröffentlicht 30.05.2015 19:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle cret@cert.org
- Teams Watchlist Login
- Unerledigt Login
client_chown in the sync client in Synology Cloud Station 1.1-2291 through 3.1-3320 on OS X allows local users to change the ownership of arbitrary files, and consequently obtain root access, by specifying a filename.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Synology ≫ Cloud Station Version1.1-2291
Synology ≫ Cloud Station Version2.0-2291
Synology ≫ Cloud Station Version2.0-2402
Synology ≫ Cloud Station Version2.1-2561
Synology ≫ Cloud Station Version2.1-2570
Synology ≫ Cloud Station Version2.1-2577
Synology ≫ Cloud Station Version3.0-3005
Synology ≫ Cloud Station Version3.0-3103
Synology ≫ Cloud Station Version3.0-3108
Synology ≫ Cloud Station Version3.0-3109
Synology ≫ Cloud Station Version3.0-3111
Synology ≫ Cloud Station Version3.1-3317
Synology ≫ Cloud Station Version3.1-3320
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.11% | 0.265 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 6.8 | 3.1 | 10 |
AV:L/AC:L/Au:S/C:C/I:C/A:C
|