CVE-2024-50631 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in the system syncing daemon in Synology Drive Server before…
High CVSS: 7.5

CVE-2024-50631

Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in the system syncing daemon in Synology Drive Server before 3.0.4-12699, 3.2.1-23280, 3.5.0-26085 and 3.5.1-26102 allows remote attackers to inject SQL commands, limited to write operations, via unspecified vectors.
Vendor
Synology
Product
Drive Server
CWE
CWE-89
Yayın Tarihi
2025-03-19 06:15:15
Güncelleme
2026-01-16 15:26:43
Source Identifier
security@synology.com
KEV Date Added
-

Kategoriler

Referanslar