CVE-2022-43932
05.01.2023, 10:15
Improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability in CGI component in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1.3.1-9346-3 allows remote attackers to read arbitrary files via unspecified vectors.Enginsight
Vendor | Product | Version |
---|---|---|
synology | router_manager | 1.2 ≤ 𝑥 < 1.2.5-8227-6 |
synology | router_manager | 1.3 ≤ 𝑥 < 1.3.1-9346-3 |
𝑥
= Vulnerable software versions