Synology Router Manager 1.2.4-8081

CPE Details

Synology Router Manager 1.2.4-8081
1.2.4-8081
2020-11-03
20h28 +00:00
2020-11-03
20h28 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:synology:router_manager:1.2.4-8081:*:*:*:*:*:*:*

Informations

Vendor

synology

Product

router_manager

Version

1.2.4-8081

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2023-41741 2023-08-31 09h08 +00:00 Exposure of sensitive information to an unauthorized actor vulnerability in cgi component in Synology Router Manager (SRM) before 1.3.1-9346-6 allows remote attackers to obtain sensitive information via unspecified vectors.
7.5
Haute
CVE-2023-41740 2023-08-31 09h08 +00:00 Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in cgi component in Synology Router Manager (SRM) before 1.3.1-9346-6 allows remote attackers to read specific files via unspecified vectors.
5.3
Moyen
CVE-2023-41739 2023-08-31 09h08 +00:00 Uncontrolled resource consumption vulnerability in File Functionality in Synology Router Manager (SRM) before 1.3.1-9346-6 allows remote authenticated users to conduct denial-of-service attacks via unspecified vectors.
6.5
Moyen
CVE-2023-41738 2023-08-31 09h08 +00:00 Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in Directory Domain Functionality in Synology Router Manager (SRM) before 1.3.1-9346-6 allows remote authenticated users to execute arbitrary commands via unspecified vectors.
8.8
Haute
CVE-2023-2729 2023-06-13 07h11 +00:00 Use of insufficiently random values vulnerability in User Management Functionality in Synology DiskStation Manager (DSM) before 7.2-64561 allows remote attackers to obtain user credential via unspecified vectors.
7.5
Haute
CVE-2023-0142 2023-06-13 06h52 +00:00 Uncontrolled search path element vulnerability in Backup Management functionality in Synology DiskStation Manager (DSM) before 6.2.4-25556-8, 7.0.1-42218-7 and 7.1-42661 allows remote authenticated users with administrator privileges to read or write arbitrary files via unspecified vectors.
8.1
Haute
CVE-2023-32956 2023-05-16 07h16 +00:00 Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in CGI component in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1.3.1-9346-3 allows remote attackers to execute arbitrary code via unspecified vectors.
9.8
Critique
CVE-2023-32955 2023-05-16 07h15 +00:00 Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in DHCP Client Functionality in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1.3.1-9346-3 allows man-in-the-middle attackers to execute arbitrary commands via unspecified vectors.
8.1
Haute
CVE-2023-0077 2023-01-05 09h07 +00:00 Integer overflow or wraparound vulnerability in CGI component in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1.3.1-9346-3 allows remote attackers to overflow buffers via unspecified vectors.
9.8
Critique
CVE-2022-43932 2023-01-05 09h02 +00:00 Improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability in CGI component in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1.3.1-9346-3 allows remote attackers to read arbitrary files via unspecified vectors.
7.5
Haute