Description
Multiple untrusted search path vulnerabilities in the installer in Synology Cloud Station Backup before 4.2.5-4396 on Windows allow local attackers to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse (1) shfolder.dll, (2) ntmarta.dll, (3) secur32.dll or (4) dwmapi.dll file in the current working directory.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-2792 | Multiple untrusted search path vulnerabilities in the installer in Synology Cloud Station Backup before 4.2.5-4396 on Windows allow local attackers to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse (1) shfolder.dll, (2) ntmarta.dll, (3) secur32.dll or (4) dwmapi.dll file in the current working directory. |
References
History
No history.
Status: PUBLISHED
Assigner: synology
Published:
Updated: 2024-08-05T17:57:58.039Z
Reserved: 2017-07-10T00:00:00.000Z
Link: CVE-2017-11157
No data.
Status : Deferred
Published: 2017-08-30T20:29:00.257
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-11157
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD