An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or write arbitrary files and conduct denial-of-service during installation.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 03 Aug 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Permissions Misconfiguration Enabling Arbitrary File Read/Write and Installation Denial in Synology Assistant |
Mon, 03 Aug 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or write arbitrary files and conduct denial-of-service during installation. | |
| Weaknesses | CWE-276 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: synology
Published:
Updated: 2026-08-03T06:00:39.179Z
Reserved: 2026-03-25T00:47:20.775Z
Link: CVE-2026-4793
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-03T08:45:03Z
Weaknesses