CVE

– pending –

Vulnerable software

DSM Remote Version <= 6.3.1.1862

Vulnerability

An unquoted service path allows a possible extension of rights at the system level.

Timeline

  • 29.10.2021 Manufacturer informed
  • 10/30/2021 Manufacturer states that the software has not been supported since 2014 and recommends not using it.