CVE-2026-4793: An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or write arbitrary files and conduct denial-of-service during ins
An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or write arbitrary files and conduct denial-of-service during installation.
Details
Original advisory: https://nvd.nist.gov/vuln/detail/CVE-2026-4793
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-4793 | coverage & exploitation status | NVD · CVE.org |
Recent advisories for An incorrect default
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- mediumGHSA-2cf7-hpwf-47h9: n8n-MCP: Incorrect authorization can expose default-scope workflow version backups in mul…ghsa · 2026-07-14
- unknownCVE-2026-21051: Incorrect default permissions in WLAN security prior to SMR Jul-2026 Release 1 allows local at…nvd · 2026-07-10
- highCVE-2026-57895: Incorrect default permissions issue exists in Pupsman versions prior to 3.9.0. An attacker can…nvd · 2026-07-08
- highCVE-2026-12064: When a user invokes curl using a schemeless URL combined with `--proto-default` sftp (or scp),…nvd · 2026-07-03
- highGHSA-99qx-5qqr-4j95: Apache ActiveMQ has an Incorrect Default Permissions vulnerabilityghsa · 2026-06-01
- criticalexploitedCVE-2024-51378: CyberPanel Incorrect Default Permissions Vulnerabilitycisa-kev · 2024-12-04
More from NVD Recent CVEs
- unknownCVE-2026-69075: FlowIntel is affected by a stored cross-site scripting vulnerability through multiple user-con…2026-08-03
- mediumCVE-2026-63563: Sharp and Toshiba Tec MFPs (multifunction printers) for a certain market have been shipped wit…2026-08-03
- lowCVE-2026-63545: Sharp and Toshiba Tec MFPs (multifunction printers) caches data internally when printing, and …2026-08-03
- mediumCVE-2026-62416: Network Scanner Tool and Network Scanner Tool Lite provided by Sharp Corporation, with the ini…2026-08-03
- mediumCVE-2026-60011: Sharp and Toshiba Tec MFPs (multifunction printers) fail to properly authorize requests to dir…2026-08-03