Show filters
300 Total Results
Displaying 61-70 of 300
Sort by:
Attacker Value
Unknown

CVE-2023-41739

Disclosure Date: August 31, 2023 (last updated October 08, 2023)
Uncontrolled resource consumption vulnerability in File Functionality in Synology Router Manager (SRM) before 1.3.1-9346-6 allows remote authenticated users to conduct denial-of-service attacks via unspecified vectors.
Attacker Value
Unknown

CVE-2023-41738

Disclosure Date: August 31, 2023 (last updated October 08, 2023)
Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in Directory Domain Functionality in Synology Router Manager (SRM) before 1.3.1-9346-6 allows remote authenticated users to execute arbitrary commands via unspecified vectors.
Attacker Value
Unknown

CVE-2023-2729

Disclosure Date: June 13, 2023 (last updated January 15, 2025)
Use of insufficiently random values vulnerability in User Management Functionality in Synology DiskStation Manager (DSM) before 7.2-64561 allows remote attackers to obtain user credential via unspecified vectors.
Attacker Value
Unknown

CVE-2023-0142

Disclosure Date: June 13, 2023 (last updated January 15, 2025)
Uncontrolled search path element vulnerability in Backup Management functionality in Synology DiskStation Manager (DSM) before 6.2.4-25556-8, 7.0.1-42218-7 and 7.1-42661 allows remote authenticated users with administrator privileges to read or write arbitrary files via unspecified vectors.
Attacker Value
Unknown

CVE-2023-32956

Disclosure Date: May 16, 2023 (last updated October 08, 2023)
Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in CGI component in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1.3.1-9346-3 allows remote attackers to execute arbitrary code via unspecified vectors.
Attacker Value
Unknown

CVE-2023-32955

Disclosure Date: May 16, 2023 (last updated October 08, 2023)
Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in DHCP Client Functionality in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1.3.1-9346-3 allows man-in-the-middle attackers to execute arbitrary commands via unspecified vectors.
Attacker Value
Unknown

CVE-2023-0077

Disclosure Date: January 05, 2023 (last updated October 08, 2023)
Integer overflow or wraparound vulnerability in CGI component in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1.3.1-9346-3 allows remote attackers to overflow buffers via unspecified vectors.
Attacker Value
Unknown

CVE-2022-43932

Disclosure Date: January 05, 2023 (last updated October 08, 2023)
Improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability in CGI component in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1.3.1-9346-3 allows remote attackers to read arbitrary files via unspecified vectors.
Attacker Value
Unknown

CVE-2022-43931

Disclosure Date: January 03, 2023 (last updated October 08, 2023)
Out-of-bounds write vulnerability in Remote Desktop Functionality in Synology VPN Plus Server before 1.4.3-0534 and 1.4.4-0635 allows remote attackers to execute arbitrary commands via unspecified vectors.
Attacker Value
Unknown

CVE-2022-43749

Disclosure Date: October 26, 2022 (last updated December 22, 2024)
Improper privilege management vulnerability in summary report management in Synology Presto File Server before 2.1.2-1601 allows remote authenticated users to bypass security constraint via unspecified vectors.