Vulnerability Details CVE-2025-66593
An origin validation error vulnerability in Synology Assistant before 7.0.6-50085 allows local users to write arbitrary files with restricted content and conduct denial-of-service during installation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 0.2%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2025-66593
-
cpe:2.3:a:synology:assistant:2.2-1062
-
cpe:2.3:a:synology:assistant:2.2-1063
-
cpe:2.3:a:synology:assistant:2.3-1134
-
cpe:2.3:a:synology:assistant:2.3-1153
-
cpe:2.3:a:synology:assistant:2.3-1157
-
cpe:2.3:a:synology:assistant:3.0-1334
-
cpe:2.3:a:synology:assistant:3.0-1347
-
cpe:2.3:a:synology:assistant:3.1-1593
-
cpe:2.3:a:synology:assistant:3.2-1920
-
cpe:2.3:a:synology:assistant:4.0-2196
-
cpe:2.3:a:synology:assistant:4.0-2216
-
cpe:2.3:a:synology:assistant:4.1-2636
-
cpe:2.3:a:synology:assistant:4.1-2638
-
cpe:2.3:a:synology:assistant:4.1-2647
-
cpe:2.3:a:synology:assistant:4.2-3179
-
cpe:2.3:a:synology:assistant:4.2-3508
-
cpe:2.3:a:synology:assistant:4.3-4206
-
cpe:2.3:a:synology:assistant:4.3-4359
-
cpe:2.3:a:synology:assistant:5.0-4418
-
cpe:2.3:a:synology:assistant:5.0-4448
-
cpe:2.3:a:synology:assistant:5.1-5002
-
cpe:2.3:a:synology:assistant:5.1-5005
-
cpe:2.3:a:synology:assistant:5.2-5566
-
cpe:2.3:a:synology:assistant:6.0-7319
-
cpe:2.3:a:synology:assistant:6.1-15030
-
cpe:2.3:a:synology:assistant:6.1-15163
-
cpe:2.3:a:synology:assistant:6.2-23733
-
cpe:2.3:a:synology:assistant:6.2-24922
-
cpe:2.3:a:synology:assistant:7.0-50029
-
cpe:2.3:a:synology:assistant:7.0.1-50044
-
cpe:2.3:a:synology:assistant:7.0.2-50046
-
cpe:2.3:a:synology:assistant:7.0.3-50049
-
cpe:2.3:a:synology:assistant:7.0.4-50051
-
cpe:2.3:a:synology:assistant:7.0.5-50070