Beveiligingsadvies

CVE-2021-29090

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-06-02 02:00:14
Laatst bijgewerkt 2024-09-17 03:29:04
Toegewezen door synology
CVSS-score 7.2
Status PUBLISHED

Beschrijving

Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in PHP component in Synology Photo Station before 6.8.14-3500 allows remote authenticated users to execute arbitrary SQL command via unspecified vectors.