Security Advisory

CVE-2022-27616

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-08-03 02:10:09
Last updated 2024-09-16 18:07:57
Assigner synology
State PUBLISHED

Description

Improper neutralization of special elements used in an OS command (OS Command Injection) vulnerability in webapi component in Synology DiskStation Manager (DSM) before 7.0.1-42218-3 allows remote authenticated users to execute arbitrary commands via unspecified vectors.