Vulnerability Details CVE-2022-43931
Out-of-bounds write vulnerability in Remote Desktop Functionality in Synology VPN Plus Server before 1.4.3-0534 and 1.4.4-0635 allows remote attackers to execute arbitrary commands via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.201
EPSS Ranking 95.1%
CVSS Severity
CVSS v3 Score 10.0
Products affected by CVE-2022-43931
-
cpe:2.3:a:synology:vpn_plus_server:-
-
cpe:2.3:a:synology:vpn_plus_server:1.4.3-0534
-
cpe:2.3:o:synology:router_manager:1.2
-
cpe:2.3:o:synology:router_manager:1.3