CVE-2021-29089
Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in thumbnail componen
Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in thumbnail component in Synology Photo Station before 6.8.14-3500 allows remote attackers users to execute arbitrary SQL commands via unspecified vectors.
CRITICAL · CVSS 9.8
EPSS 0.00818
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0