Synology Security Advisory 22:01 DSM
Concerning multiple vulnerabilities allow remote attackers, or remote authenticated users to inject arbitrary web script or HTML via susceptible version of DiskStation Manager NAS OS
This is a Press Release edited by StorageNewsletter.com on January 19, 2022 at 2:01 pmSynology, Inc. had published a security advisory concerning multiple vulnerabilities allow remote attackers, or remote authenticated users to inject arbitrary web script or HTML via a susceptible version of DiskStation Manager NAS OS.
Publish time: 2022-01-11 15:46:17 UTC+8
Last updated: 2022-01-11 15:46:17 UTC+8
Severity: Moderate
Status: Ongoing
Abstract
Multiple vulnerabilities allow remote attackers, or remote authenticated users to inject arbitrary web script or HTML via a susceptible version of DiskStation Manager (DSM) NAS OS.
Affected products:
Mitigation: None
Detail: Reserved
Acknowledgement:
-
Eugene Lim, Government Technology Agency of Singapore
-
Thomas Fady
Revision: