client_chown in the sync client in Synology Cloud Station 1.1-2291 through 3.1-3320 on OS X allows local users to change the ownership of arbitrary files, and consequently obtain root access, by specifying a filename.
2015-05-30T19:59:03.880
2025-04-12T10:46:40.837
Deferred
CVSSv2: 6.8 (MEDIUM)
AV:L/AC:L/Au:S/C:C/I:C/A:C
3.1
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | synology | cloud_station | 1.1-2291 | Yes |
| Application | synology | cloud_station | 2.0-2291 | Yes |
| Application | synology | cloud_station | 2.0-2402 | Yes |
| Application | synology | cloud_station | 2.1-2561 | Yes |
| Application | synology | cloud_station | 2.1-2570 | Yes |
| Application | synology | cloud_station | 2.1-2577 | Yes |
| Application | synology | cloud_station | 3.0-3005 | Yes |
| Application | synology | cloud_station | 3.0-3103 | Yes |
| Application | synology | cloud_station | 3.0-3108 | Yes |
| Application | synology | cloud_station | 3.0-3109 | Yes |
| Application | synology | cloud_station | 3.0-3111 | Yes |
| Application | synology | cloud_station | 3.1-3317 | Yes |
| Application | synology | cloud_station | 3.1-3320 | Yes |
| Operating System | apple | mac_os_x | * | No |