Show filters
88 Total Results
Displaying 21-30 of 88
Sort by:
Attacker Value
Unknown
CVE-2021-43927
Disclosure Date: January 24, 2022 (last updated January 15, 2025)
Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in Security Management functionality in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote attackers to inject SQL commands via unspecified vectors.
0
Attacker Value
Unknown
CVE-2021-43925
Disclosure Date: January 24, 2022 (last updated January 15, 2025)
Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in Log Management functionality in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote attackers to inject SQL commands via unspecified vectors.
0
Attacker Value
Unknown
CVE-2021-43926
Disclosure Date: January 24, 2022 (last updated January 15, 2025)
Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in Log Management functionality in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote attackers to inject SQL commands via unspecified vectors.
0
Attacker Value
Unknown
CVE-2021-43929
Disclosure Date: January 19, 2022 (last updated January 15, 2025)
Improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability in work flow management in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2022-22679
Disclosure Date: January 19, 2022 (last updated January 15, 2025)
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in support service management in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote authenticated users to write arbitrary files via unspecified vectors.
0
Attacker Value
Unknown
CVE-2021-27649
Disclosure Date: June 23, 2021 (last updated January 15, 2025)
Use after free vulnerability in file transfer protocol component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown
CVE-2021-29085
Disclosure Date: June 23, 2021 (last updated January 15, 2025)
Improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability in file sharing management component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to read arbitrary files via unspecified vectors.
0
Attacker Value
Unknown
CVE-2021-29084
Disclosure Date: June 23, 2021 (last updated January 15, 2025)
Improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability in Security Advisor report management component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to read arbitrary files via unspecified vectors.
0
Attacker Value
Unknown
CVE-2021-29087
Disclosure Date: June 23, 2021 (last updated January 15, 2025)
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to write arbitrary files via unspecified vectors.
0
Attacker Value
Unknown
CVE-2021-29086
Disclosure Date: June 23, 2021 (last updated January 15, 2025)
Exposure of sensitive information to an unauthorized actor vulnerability in webapi component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to obtain sensitive information via unspecified vectors.
0