An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or write arbitrary files and conduct denial-of-service during installation.
Metrics
Affected Vendors & Products
References
History
Mon, 03 Aug 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 03 Aug 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Synology
Synology assistant |
|
| Vendors & Products |
Synology
Synology assistant |
Mon, 03 Aug 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Permissions Misconfiguration Enabling Arbitrary File Read/Write and Installation Denial in Synology Assistant |
Mon, 03 Aug 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or write arbitrary files and conduct denial-of-service during installation. | |
| Weaknesses | CWE-276 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: synology
Published: 2026-08-03T06:00:39.179Z
Updated: 2026-08-03T14:54:10.232Z
Reserved: 2026-03-25T00:47:20.775Z
Link: CVE-2026-4793
Updated: 2026-08-03T14:54:05.967Z
No data.
No data.