Improper limitation of a pathname to a restricted directory ('Path Traversal') in cgi component in Synology DiskStation Manager (DSM) before 6.2.4-25553 allows local users to execute arbitrary code via unspecified vectors.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.synology.com/security/advisory/Synology_SA_21_03 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: synology
Published: 2021-06-01T09:45:20.782280Z
Updated: 2024-09-16T20:16:24.198Z
Reserved: 2021-03-23T00:00:00
Link: CVE-2021-29088
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-06-01T14:15:09.767
Modified: 2024-11-21T06:00:41.423
Link: CVE-2021-29088
Redhat
No data.