Synology Router Manager vulnerabilities
43 known vulnerabilities affecting synology/synology_router_manager.
Total CVEs
43
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH15MEDIUM23
Vulnerabilities
Page 3 of 3
CVE-2018-8918MEDIUMCVSS 5.4≥ unspecified, < 1.1.7-69412018-12-24
CVE-2018-8918 [MEDIUM] CWE-79 CVE-2018-8918: Cross-site scripting (XSS) vulnerability in info.cgi in Synology Router Manager (SRM) before 1.1.7-6
Cross-site scripting (XSS) vulnerability in info.cgi in Synology Router Manager (SRM) before 1.1.7-6941 allows remote attackers to inject arbitrary web script or HTML via the host parameter.
cvelistv5nvd
CVE-2017-12078HIGHCVSS 7.2≥ unspecified, < 1.1.6-69312018-06-08
CVE-2017-12078 [HIGH] CWE-77 CVE-2017-12078: Command injection vulnerability in EZ-Internet in Synology Router Manager (SRM) before 1.1.6-6931 al
Command injection vulnerability in EZ-Internet in Synology Router Manager (SRM) before 1.1.6-6931 allows remote authenticated users to execute arbitrary command via the username parameter.
cvelistv5nvd
CVE-2017-15895MEDIUMCVSS 6.5vbefore 1.1.5-6542-42017-12-08
CVE-2017-15895 [MEDIUM] CWE-22 CVE-2017-15895: Directory traversal vulnerability in the SYNO.FileStation.Extract in Synology Router Manager (SRM) b
Directory traversal vulnerability in the SYNO.FileStation.Extract in Synology Router Manager (SRM) before 1.1.5-6542-4 allows remote authenticated users to write arbitrary files via the dest_folder_path parameter.
cvelistv5nvd
← Previous3 / 3