Vulnerability Details CVE-2022-49042
An inclusion of functionality from untrusted control sphere vulnerability in MinGW DLL component in Synology Hyper Backup Explorer before 3.0.1-0156 allows local users to execute arbitrary code via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 5.1%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2022-49042
-
cpe:2.3:a:synology:hyper_backup_explorer:1.0-0025
-
cpe:2.3:a:synology:hyper_backup_explorer:1.0-0029
-
cpe:2.3:a:synology:hyper_backup_explorer:1.1.0-0032
-
cpe:2.3:a:synology:hyper_backup_explorer:1.1.1-0035
-
cpe:2.3:a:synology:hyper_backup_explorer:2.0.0-0059
-
cpe:2.3:a:synology:hyper_backup_explorer:2.0.1-0062
-
cpe:2.3:a:synology:hyper_backup_explorer:2.0.2-0073
-
cpe:2.3:a:synology:hyper_backup_explorer:2.0.3-0074
-
cpe:2.3:a:synology:hyper_backup_explorer:2.0.4-0075
-
cpe:2.3:a:synology:hyper_backup_explorer:2.1.0-0105
-
cpe:2.3:a:synology:hyper_backup_explorer:2.1.2-0110
-
cpe:2.3:a:synology:hyper_backup_explorer:2.1.8-0126
-
cpe:2.3:a:synology:hyper_backup_explorer:2.1.9-0129
-
cpe:2.3:a:synology:hyper_backup_explorer:2.2.0-0131
-
cpe:2.3:a:synology:hyper_backup_explorer:2.2.1-0133
-
cpe:2.3:a:synology:hyper_backup_explorer:2.2.2-0141
-
cpe:2.3:a:synology:hyper_backup_explorer:3.0.0-0149