Vulnerabilities
Vulnerable Software
Improper neutralization of special elements used in a command ('Command Injection') vulnerability in task management component in Synology Download Station before 3.8.16-3566 allows remote authenticated users to execute arbitrary code via unspecified vectors.
CVSS Score
9.9
EPSS Score
0.016
Published
2021-06-18
Improper privilege management vulnerability in cgi component in Synology Download Station before 3.8.16-3566 allows remote authenticated users to execute arbitrary code via unspecified vectors.
CVSS Score
9.9
EPSS Score
0.011
Published
2021-06-18
Server-Side Request Forgery (SSRF) vulnerability in task management component in Synology Download Station before 3.8.16-3566 allows remote authenticated users to access intranet resources via unspecified vectors.
CVSS Score
5.0
EPSS Score
0.001
Published
2021-06-18


Contact Us

Shodan ® - All rights reserved