Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qg82-rhc2-x2cj

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.4

Описание

Lack of administrator control over security vulnerability in client.cgi in Synology SSL VPN Client before 1.2.5-0226 allows remote attackers to conduct man-in-the-middle attacks via the (1) command, (2) hostname, or (3) port parameter.

Lack of administrator control over security vulnerability in client.cgi in Synology SSL VPN Client before 1.2.5-0226 allows remote attackers to conduct man-in-the-middle attacks via the (1) command, (2) hostname, or (3) port parameter.

EPSS

Процентиль: 53%
0.00298
Низкий

7.4 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
почти 7 лет назад

Lack of administrator control over security vulnerability in client.cgi in Synology SSL VPN Client before 1.2.5-0226 allows remote attackers to conduct man-in-the-middle attacks via the (1) command, (2) hostname, or (3) port parameter.

EPSS

Процентиль: 53%
0.00298
Низкий

7.4 High

CVSS3