← Back to browse · API

CVE-2022-43931

Severity
CRITICAL
CVSS
10.0
EPSS
0.16841
Risk score
45.89
CISA KEV
No
PoC
No
Published
2023-01-03
Modified
2025-04-10
First seen
2026-08-07
Aliases
EUVD-2022-46901, GHSA-XVG3-Q6R5-8FHF
Products
Synology:VPN Plus Server * <1.4.3-0534, Synology:VPN Plus Server * <1.4.4-0635
Sources
euvd EUVD-2022-46901

Description

Out-of-bounds write vulnerability in Remote Desktop Functionality in Synology VPN Plus Server before 1.4.3-0534 and 1.4.4-0635 allows remote attackers to execute arbitrary commands via unspecified vectors.

References