Origin validation error vulnerability in Synology ActiveProtect Agent before 1.1.0-0439 allows local users to write arbitrary files with restricted content when installing.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 27 May 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Origin validation error vulnerability in Synology ActiveProtect Agent before 1.1.0-0439 allows local users to write arbitrary files with restricted content when installing. | |
| Weaknesses | CWE-346 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: synology
Published:
Updated: 2026-05-27T08:38:27.318Z
Reserved: 2025-11-24T06:58:48.721Z
Link: CVE-2025-13593
No data.
Status : Received
Published: 2026-05-27T09:16:26.730
Modified: 2026-05-27T09:16:26.730
Link: CVE-2025-13593
No data.
OpenCVE Enrichment
No data.
Weaknesses