CVE Published: 10/05/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: synology |
Vendor: Synology |
Product: Media Server Status : PUBLISHED
CVE-2018-8914 Description
SQL injection vulnerability in UPnP DMA in Synology Media Server before 1.7.6-2842 and before 1.4-2654 allows remote attackers to execute arbitrary SQL commands via the ObjectID parameter.