mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-26 09:28:10 +02:00
807 B
807 B
CVE-2015-2851
Description
client_chown in the sync client in Synology Cloud Station 1.1-2291 through 3.1-3320 on OS X allows local users to change the ownership of arbitrary files, and consequently obtain root access, by specifying a filename.
POC
Reference
- http://www.kb.cert.org/vuls/id/551972
- http://www.kb.cert.org/vuls/id/551972
- http://www.kb.cert.org/vuls/id/BLUU-9VBU45
- http://www.kb.cert.org/vuls/id/BLUU-9VBU45
Github
No PoCs found on GitHub currently.