Synology DiskStation Manager Sudo Off-by-one Error (CVE-2021-3156)

high Tenable OT Security Plugin ID 502412

Version 1.2

Oct 1, 2024, 4:32 PM

  • CISA reference
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:H/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:H/RL:O/RC:C")
  • Exploit attributes ("Exploit available" set to "True")
  • Exploit attributes ("Exploit framework canvas" set to "True")
  • Exploit attributes ("Exploit framework core" set to "True")
  • Exploit attributes ("Exploit framework metasploit" set to "True")
  • Exploit attributes ("Exploitability ease" changed from "No known exploits are available" to "Exploits are available")
  • Exploit attributes ("Exploited by malware" set to "True")

Plugin Feed: 202410011632

Version 1.1

Oct 1, 2024, 9:12 AM

  • New

Plugin Feed: 202410010912

* Changelogs are generally available for changes made after Nov 1, 2022