Security Advisory

CVE-2018-8929

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-07-06 12:00:00
Last updated 2024-09-16 20:41:43
Assigner synology
State PUBLISHED

Description

Improper restriction of communication channel to intended endpoints vulnerability in HTTP daemon in Synology SSL VPN Client before 1.2.4-0224 allows remote attackers to conduct man-in-the-middle attacks via a crafted payload.