CVE-2022-27616
03.08.2022, 02:15
Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in webapi component in Synology DiskStation Manager (DSM) before 7.0.1-42218-3 allows remote authenticated users to execute arbitrary commands via unspecified vectors.
Vendor | Product | Version |
---|---|---|
synology | diskstation_manager | 6.2 ≤ 𝑥 < 6.2.4-25556-5 |
synology | diskstation_manager | 7.0 ≤ 𝑥 < 7.0.1-42218-3 |
𝑥
= Vulnerable software versions