|
246361
|
4.3 |
MEDIUM
Network
|
synology
|
diskstation_manager
|
Information exposure vulnerability in /usr/syno/etc/mount.conf in Synology DiskStation Manager (DSM) before 6.2.1-23824 allows remote authenticated users to obtain sensitive information via the world…
|
CWE-200
Information Exposure
|
CVE-2018-13291
|
2024-11-21 12:46 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246362
|
4.3 |
MEDIUM
Network
|
synology
|
router_manager
|
Information exposure vulnerability in SYNO.Core.ACL in Synology Router Manager (SRM) before 1.1.7-6941-2 allows remote authenticated users to determine the existence of files or obtain sensitive info…
|
CWE-200
Information Exposure
|
CVE-2018-13290
|
2024-11-21 12:46 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246363
|
5.3 |
MEDIUM
Network
|
synology
|
router_manager
|
Information exposure vulnerability in SYNO.FolderSharing.List in Synology Router Manager (SRM) before 1.1.7-6941-2 allows remote attackers to obtain sensitive information via the (1) folder_path or (…
|
CWE-200
Information Exposure
|
CVE-2018-13289
|
2024-11-21 12:46 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246364
|
5.3 |
MEDIUM
Network
|
synology
|
file_station
|
Information exposure vulnerability in SYNO.FolderSharing.List in Synology File Station before 1.2.3-0252 and before 1.1.5-0125 allows remote attackers to obtain sensitive information via the (1) fold…
|
CWE-200
Information Exposure
|
CVE-2018-13288
|
2024-11-21 12:46 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246365
|
6.5 |
MEDIUM
Network
|
synology
|
router_manager
|
Incorrect default permissions vulnerability in synouser.conf in Synology Router Manager (SRM) before 1.1.7-6941-1 allows remote authenticated users to obtain sensitive information via the world reada…
|
CWE-276
Incorrect Default Permissions
|
CVE-2018-13287
|
2024-11-21 12:46 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246366
|
6.5 |
MEDIUM
Network
|
synology
|
diskstation_manager
|
Incorrect default permissions vulnerability in synouser.conf in Synology Diskstation Manager (DSM) before 6.2-23739-1 allows remote authenticated users to obtain sensitive information via the world r…
|
CWE-276
Incorrect Default Permissions
|
CVE-2018-13286
|
2024-11-21 12:46 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246367
|
8.8 |
HIGH
Network
|
synology
|
router_manager
|
Command injection vulnerability in ftpd in Synology Router Manager (SRM) before 1.1.7-6941-1 allows remote authenticated users to execute arbitrary OS commands via the (1) MKD or (2) RMD command.
|
CWE-78
OS Command
|
CVE-2018-13285
|
2024-11-21 12:46 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246368
|
8.8 |
HIGH
Network
|
synology
|
diskstation_manager
|
Command injection vulnerability in ftpd in Synology Diskstation Manager (DSM) before 6.2-23739-1 allows remote authenticated users to execute arbitrary OS commands via the (1) MKD or (2) RMD command.
|
CWE-78
OS Command
|
CVE-2018-13284
|
2024-11-21 12:46 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246369
|
7.4 |
HIGH
Network
|
synology
|
ssl_vpn_client
|
Lack of administrator control over security vulnerability in client.cgi in Synology SSL VPN Client before 1.2.5-0226 allows remote attackers to conduct man-in-the-middle attacks via the (1) command, …
|
NVD-CWE-noinfo
|
CVE-2018-13283
|
2024-11-21 12:46 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246370
|
5.4 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
OX App Suite 7.8.4 and earlier allows XSS. Internal reference: 58742 (Bug ID)
|
CWE-79
Cross-site Scripting
|
CVE-2018-13104
|
2024-11-21 12:46 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|