CVE-2021-29083
Improper neutralization of special elements used in an OS command in SYNO.Core.Network.PPPoE in Synology DiskStation Man
Improper neutralization of special elements used in an OS command in SYNO.Core.Network.PPPoE in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote authenticated users to execute arbitrary code via realname parameter.
HIGH · CVSS 7.2
EPSS 0.00895
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0