Show filters
325,375 Total Results
Displaying 371-380 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown

CVE-2024-45372

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
MZK-DP300N firmware versions 1.04 and earlier contains a cross-site request forger vulnerability. Viewing a malicious page while logging in to the web management page of the affected product may lead the user to perform unintended operations such as changing the login password, etc.
0
Attacker Value
Unknown

CVE-2024-47045

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Privilege chaining issue exists in the installer of e-Tax software(common program). If this vulnerability is exploited, a malicious DLL prepared by an attacker may be executed with higher privileges than the application privilege.
0
Attacker Value
Unknown

CVE-2023-52950

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Missing encryption of sensitive data vulnerability in login component in Synology Active Backup for Business Agent before 2.7.0-3221 allows adjacent man-in-the-middle attackers to obtain user credential via unspecified vectors.
0
Attacker Value
Unknown

CVE-2023-52949

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Missing authentication for critical function vulnerability in proxy settings functionality in Synology Active Backup for Business Agent before 2.7.0-3221 allows local users to obtain user credential via unspecified vectors.
0
Attacker Value
Unknown

CVE-2023-52948

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Missing encryption of sensitive data vulnerability in settings functionality in Synology Active Backup for Business Agent before 2.7.0-3221 allows local users to obtain user credential via unspecified vectors.
0
Attacker Value
Unknown

CVE-2023-52947

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Missing authentication for critical function vulnerability in logout functionality in Synology Active Backup for Business Agent before 2.6.3-3101 allows local users to logout the client via unspecified vectors. The backup functionality will continue to operate and will not be affected by the logout.
0
Attacker Value
Unknown

CVE-2023-52946

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in vss service component in Synology Drive Client before 3.5.0-16084 allows remote attackers to overwrite trivial buffers and crash the client via unspecified vectors.
0
Attacker Value
Unknown

CVE-2022-49041

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in backup task management functionality in Synology Drive Client before 3.4.0-15721 allows local users with administrator privileges to crash the client via unspecified vectors.
0
Attacker Value
Unknown

CVE-2022-49040

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in connection management functionality in Synology Drive Client before 3.4.0-15721 allows local users with administrator privileges to crash the client via unspecified vectors.
0
Attacker Value
Unknown

CVE-2022-49039

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Out-of-bounds write vulnerability in backup task management functionality in Synology Drive Client before 3.4.0-15721 allows local users with administrator privileges to execute arbitrary commands via unspecified vectors.
0