High
CVSS: 7.2
A vulnerability in portenable cgi allows remote authenticated users to get the status of installed packages.
Medium
CVSS: 4.3
A vulnerability in VideoPlayer2 subtitle cgi allows remote authenticated users to read .srt files.
Medium
CVSS: 4.3
A vulnerability in FileStation file cgi allows remote authenticated users to read file metadata and path information.
Medium
CVSS: 5.4
A vulnerability in FileStation thumb cgi allows remote authenticated users to read/write image files.
Medium
CVSS: 5.9
Improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability in NTP Region functionality in Synology Router Manager (SRM) before 1.3.1-9346-11 allows remote authenticated users with administrator privil…
Medium
CVSS: 5.9
Improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability in VPN Setting functionality in Synology Router Manager (SRM) before 1.3.1-9346-11 allows remote authenticated users with administrator privi…
High
CVSS: 7.2
Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in DDNS Record functionality in Synology Router Manager (SRM) before 1.3.1-9346-11 allows remote authenticated users with administrator…