CVE-2021-43927
07.02.2022, 03:15
Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in Security Management functionality in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote attackers to inject SQL commands via unspecified vectors.
Vendor | Product | Version |
---|---|---|
synology | diskstation_manager | 6.2 ≤ 𝑥 < 6.2.4-25556-3 |
synology | diskstation_manager | 7.0 ≤ 𝑥 < 7.0.1-42218-2 |
𝑥
= Vulnerable software versions