Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-53880 | Inclusion of functionality from untrusted control sphere vulnerability in OpenSSL DLL component in Synology Drive Client before 3.3.0-15082 allows local users to execute arbitrary code via unspecified vectors. |
Tue, 08 Oct 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Synology drive Client
|
|
| CPEs | cpe:2.3:a:synology:drive_client:*:*:*:*:*:desktop:*:* | |
| Vendors & Products |
Synology drive Client
|
Thu, 26 Sep 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Synology
Synology drive |
|
| CPEs | cpe:2.3:a:synology:drive:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Synology
Synology drive |
|
| Metrics |
ssvc
|
Thu, 26 Sep 2024 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Inclusion of functionality from untrusted control sphere vulnerability in OpenSSL DLL component in Synology Drive Client before 3.3.0-15082 allows local users to execute arbitrary code via unspecified vectors. | |
| Weaknesses | CWE-829 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: synology
Published:
Updated: 2024-09-26T14:52:02.124Z
Reserved: 2024-09-24T08:40:22.263Z
Link: CVE-2022-49038
Updated: 2024-09-26T14:51:57.515Z
Status : Analyzed
Published: 2024-09-26T04:15:04.940
Modified: 2024-10-08T16:08:35.743
Link: CVE-2022-49038
No data.
OpenCVE Enrichment
No data.
EUVD