Vulnerabilities > Synology > Presto File Server

DATE CVE VULNERABILITY TITLE RISK
2022-10-26 CVE-2022-43748 Path Traversal vulnerability in Synology Presto File Server
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in file operation management in Synology Presto File Server before 2.1.2-1601 allows remote attackers to write arbitrary files via unspecified vectors.
network
low complexity
synology CWE-22
7.5
2022-10-26 CVE-2022-43749 Improper Privilege Management vulnerability in Synology Presto File Server
Improper privilege management vulnerability in summary report management in Synology Presto File Server before 2.1.2-1601 allows remote authenticated users to bypass security constraint via unspecified vectors.
network
low complexity
synology CWE-269
8.8