| ID |
CVE-2015-2851
|
| Sažetak |
client_chown in the sync client in Synology Cloud Station 1.1-2291 through 3.1-3320 on OS X allows local users to change the ownership of arbitrary files, and consequently obtain root access, by specifying a filename. |
| Reference |
|
| CVSS |
| Base: | 6.8 |
| Impact: | 10.0 |
| Exploitability: | 3.1 |
|
| Pristup |
| Vektor | Složenost | Autentikacija |
| LOCAL |
LOW |
SINGLE |
|
| Impact |
| Povjerljivost | Cjelovitost | Dostupnost |
| COMPLETE |
COMPLETE |
COMPLETE |
|
| CVSS vektor |
AV:L/AC:L/Au:S/C:C/I:C/A:C |
| Zadnje važnije ažuriranje |
03-12-2016 - 03:07 |
| Objavljeno |
30-05-2015 - 19:59 |