Synology DiskStation Manager Sudo Off-by-one Error (CVE-2021-3156)

high Tenable OT Security Plugin ID 502412

Version 1.2

Oct 1, 2024, 4:32 PM

  • CISA reference
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:H/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:H/RL:O/RC:C")
  • Exploit attributes ("Exploit available" set to "True")
  • Exploit attributes ("Exploit framework canvas" set to "True")
  • Exploit attributes ("Exploit framework core" set to "True")
  • Exploit attributes ("Exploit framework metasploit" set to "True")
  • Exploit attributes ("Exploitability ease" changed from "No known exploits are available" to "Exploits are available")
  • Exploit attributes ("Exploited by malware" set to "True")

Plugin Feed: 202410011632