Description
Improper limitation of a pathname to a restricted directory (-Path Traversal-) vulnerability in Archiving Pull functionality in Synology Surveillance Station before 9.2.2-11575 and 9.2.2-9575 allows remote authenticated users with administrator privileges to limited file write via unspecified vectors.
CVSS 2.7EPSS 0.325%Risk 0.28
View source- Published
- 2026-05-27 09:16:25
- Affected versions
- <9.2.2-11575, <9.2.2-9575
- Type
- Core software
- Vector
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N