VYPR
Critical severity10.0NVD Advisory· Published Oct 20, 2022· Updated Jun 17, 2026

CVE-2022-27626

CVE-2022-27626

Description

A vulnerability regarding concurrent execution using shared resource with improper synchronization ('Race Condition') is found in the session processing functionality of Out-of-Band (OOB) Management. This allows remote attackers to execute arbitrary commands via unspecified vectors. The following models with Synology DiskStation Manager (DSM) versions before 7.1.1-42962-2 may be affected: DS3622xs+, FS3410, and HD6500.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*range: <7.1.1-42962-2
    • (no CPE)range: <7.1.1-42962-2
    • (no CPE)range: unspecified
  • Range: <7.1.1-42962-2
  • Synology/FS3410llm-fuzzy
    Range: <7.1.1-42962-2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.