Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6q24-858g-34rg

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Server-Side Request Forgery (SSRF) vulnerability in webapi component in Synology Video Station before 2.4.10-1632 allows remote authenticated users to send arbitrary request to intranet resources via unspecified vectors.

Server-Side Request Forgery (SSRF) vulnerability in webapi component in Synology Video Station before 2.4.10-1632 allows remote authenticated users to send arbitrary request to intranet resources via unspecified vectors.

EPSS

Процентиль: 59%
0.0038
Низкий

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 6.6
nvd
больше 4 лет назад

Server-Side Request Forgery (SSRF) vulnerability in webapi component in Synology Video Station before 2.4.10-1632 allows remote authenticated users to send arbitrary request to intranet resources via unspecified vectors.

EPSS

Процентиль: 59%
0.0038
Низкий

Дефекты

CWE-918