CVE-2017-12078

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
08/06/2018
Last modified:
09/10/2019

Description

Command injection vulnerability in EZ-Internet in Synology Router Manager (SRM) before 1.1.6-6931 allows remote authenticated users to execute arbitrary command via the username parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:synology:router_manager:*:*:*:*:*:*:*:* 1.1.6-6931 (excluding)