Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-14491 |
|
Out-of-Bounds Write in platform/external/dnsmasq (CVE-2017-14491)
out-of-bounds write in platform/external/dnsmasq (CVE-2017-14491). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `11:2021-03-01` or later.
|
| CVE-2017-15892 |
|
Cross-Site Scripting (XSS) in synology (CVE-2017-15892)
cross-site scripting in synology (CVE-2017-15892). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-15886 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2017-15886)
SSRF in ssrf (CVE-2017-15886). Confidential information can be exposed externally.
|
| CVE-2017-16768 |
|
Cross-Site Scripting (XSS) in synology (CVE-2017-16768)
cross-site scripting in synology (CVE-2017-16768). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-16766 |
|
Vulnerability in synology (CVE-2017-16766)
vulnerability in synology (CVE-2017-16766). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12072 |
|
Cross-Site Scripting (XSS) in synology (CVE-2017-12072)
cross-site scripting in synology (CVE-2017-12072). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-15890 |
|
Cross-Site Scripting (XSS) in synology (CVE-2017-15890)
cross-site scripting in synology (CVE-2017-15890). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-15895 |
|
Path Traversal in path-traversal (CVE-2017-15895)
path traversal in path-traversal (CVE-2017-15895). Data can be tampered with by attackers.
|
| CVE-2017-15894 |
|
Path Traversal in path-traversal (CVE-2017-15894)
path traversal in path-traversal (CVE-2017-15894). Data can be tampered with by attackers.
|
| CVE-2017-15893 |
|
Path Traversal in path-traversal (CVE-2017-15893)
path traversal in path-traversal (CVE-2017-15893). Data can be tampered with by attackers.
|
| CVE-2017-15891 |
|
Vulnerability in synology (CVE-2017-15891)
vulnerability in synology (CVE-2017-15891). Data can be tampered with by attackers.
|
| CVE-2017-12079 |
|
Vulnerability in synology (CVE-2017-12079)
vulnerability in synology (CVE-2017-12079). Confidential information can be exposed externally.
|
| CVE-2017-12080 |
|
Information Disclosure in synology (CVE-2017-12080)
vulnerability in synology (CVE-2017-12080). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-15889 |
|
Command Injection in synology (CVE-2017-15889)
command injection in synology (CVE-2017-15889). Successful exploitation can lead to full system takeover.
|
| CVE-2017-15887 |
|
Vulnerability in synology (CVE-2017-15887)
vulnerability in synology (CVE-2017-15887). Successful exploitation can lead to full system takeover.
|
| CVE-2017-15888 |
|
Cross-Site Scripting (XSS) in synology (CVE-2017-15888)
cross-site scripting in synology (CVE-2017-15888). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12071 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2017-12071)
SSRF in ssrf (CVE-2017-12071). Confidential information can be exposed externally.
|
| CVE-2017-11162 |
|
Path Traversal in path-traversal (CVE-2017-11162)
path traversal in path-traversal (CVE-2017-11162). Confidential information can be exposed externally.
|
| CVE-2017-11161 |
|
SQL Injection in sqli (CVE-2017-11161)
SQL injection in sqli (CVE-2017-11161). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11158 |
|
Vulnerability in synology (CVE-2017-11158)
vulnerability in synology (CVE-2017-11158). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11157 |
|
Vulnerability in synology (CVE-2017-11157)
vulnerability in synology (CVE-2017-11157). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12077 |
|
Vulnerability in dos (CVE-2017-12077)
vulnerability in dos (CVE-2017-12077). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12076 |
|
Vulnerability in dos (CVE-2017-12076)
vulnerability in dos (CVE-2017-12076). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9555 |
|
Cross-Site Scripting (XSS) in synology (CVE-2017-9555)
cross-site scripting in synology (CVE-2017-9555). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12074 |
|
Path Traversal in path-traversal (CVE-2017-12074)
path traversal in path-traversal (CVE-2017-12074). Data can be tampered with by attackers.
|
| CVE-2017-11159 |
|
Vulnerability in synology (CVE-2017-11159)
vulnerability in synology (CVE-2017-11159). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11160 |
|
Vulnerability in synology (CVE-2017-11160)
vulnerability in synology (CVE-2017-11160). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11156 |
|
Vulnerability in synology (CVE-2017-11156)
vulnerability in synology (CVE-2017-11156). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11150 |
|
OS Command Injection in synology (CVE-2017-11150)
OS command injection in synology (CVE-2017-11150). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11149 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2017-11149)
SSRF in ssrf (CVE-2017-11149). Confidential information can be exposed externally.
|
| CVE-2017-9556 |
|
Cross-Site Scripting (XSS) in synology (CVE-2017-9556)
cross-site scripting in synology (CVE-2017-9556). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11148 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2017-11148)
SSRF in ssrf (CVE-2017-11148). Confidential information can be exposed externally.
|
| CVE-2017-11155 |
|
Vulnerability in synology (CVE-2017-11155)
vulnerability in synology (CVE-2017-11155). Confidential information can be exposed externally.
|
| CVE-2017-11154 |
|
Unrestricted File Upload in synology (CVE-2017-11154)
vulnerability in synology (CVE-2017-11154). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11153 |
|
Unsafe Deserialization in deserialization (CVE-2017-11153)
vulnerability in deserialization (CVE-2017-11153). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11152 |
|
Path Traversal in path-traversal (CVE-2017-11152)
path traversal in path-traversal (CVE-2017-11152). Data can be tampered with by attackers.
|
| CVE-2017-11151 |
|
Authentication Bypass in synology (CVE-2017-11151)
authentication bypass in synology (CVE-2017-11151). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9554 |
|
Information Disclosure in synology (CVE-2017-9554)
vulnerability in synology (CVE-2017-9554). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9553 |
|
Vulnerability in synology (CVE-2017-9553)
vulnerability in synology (CVE-2017-9553). Confidential information can be exposed externally.
|
| CVE-2015-9105 |
|
Cross-Site Scripting (XSS) in synology (CVE-2015-9105)
cross-site scripting in synology (CVE-2015-9105). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-9104 |
|
Cross-Site Scripting (XSS) in synology (CVE-2015-9104)
cross-site scripting in synology (CVE-2015-9104). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-9103 |
|
Cross-Site Scripting (XSS) in synology (CVE-2015-9103)
cross-site scripting in synology (CVE-2015-9103). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-9102 |
|
Cross-Site Scripting (XSS) in synology (CVE-2015-9102)
cross-site scripting in synology (CVE-2015-9102). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9552 |
|
Vulnerability in synology (CVE-2017-9552)
vulnerability in synology (CVE-2017-9552). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10331 |
|
Path Traversal in path-traversal (CVE-2016-10331)
path traversal in path-traversal (CVE-2016-10331). Confidential information can be exposed externally.
|
| CVE-2016-10330 |
|
Path Traversal in path-traversal (CVE-2016-10330)
path traversal in path-traversal (CVE-2016-10330). Confidential information can be exposed externally.
|
| CVE-2016-10329 |
|
Command Injection in synology (CVE-2016-10329)
command injection in synology (CVE-2016-10329). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10323 |
|
Vulnerability in synology (CVE-2016-10323)
vulnerability in synology (CVE-2016-10323). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10322 |
|
Command Injection in synology (CVE-2016-10322)
command injection in synology (CVE-2016-10322). Successful exploitation can lead to full system takeover.
|