我们使用 cookie 来帮助我们改善网页体验。请阅读我们的 Cookie 政策 。
2023-11-29
Severity
Status
An Improper Privilege Management vulnerability was found in ASUSTOR Data Master (ADM) allows an unprivileged local users to modify the storage devices configuration. Affected products and versions include: ADM 4.0.6.RIS1, 4.1.0 and below as well as ADM 4.2.2.RI61 and below.
Product | Severity | Fixed Release Availability |
---|---|---|
ADM 4.2 and 4.1 | Important | Upgrade to ADM 4.2.3.RK91 or above. |
ADM 4.0 | Important | Upgrade to ADM 4.0.6.RNS1 or above. |
Stéphane Chauveau (stephane@chauveau-central.net)
Revision | Date | Description |
---|---|---|
1 | 2023-08-23 | Initial public release. |
2 | 2023-08-23 | CVE ID (CVE-2023-3699) is assigned for the issue. |
3 | 2023-08-23 | ADM 4.2.3.RK91 has been released for fixing the issue. |
4 | 2023-11-29 | ADM 4.0.6.RNS1 has been released for fixing the issue. |