Newest Plugins

IDNameProductFamilyPublishedSeverity
502477Synology DSM HTTP/2 Implementations Window Size and Stream Prioritization Manipulation (CVE-2019-9511)Tenable OT SecurityTenable.ot10/1/2024
high
502476Synology DiskStation Manager Samba Incorrect Default Permissions (CVE-2019-3870)Tenable OT SecurityTenable.ot10/1/2024
medium
502475Synology DiskStation Manager Out-of-bounds Write (CVE-2021-26562)Tenable OT SecurityTenable.ot10/1/2024
high
502474Synology DiskStation Manager Path Traversal (CVE-2022-22679)Tenable OT SecurityTenable.ot10/1/2024
medium
502473Synology DiskStation FAAD2 Decoder Out-of-bounds Write (CVE-2021-26567)Tenable OT SecurityTenable.ot10/1/2024
high
502472Synology DiskStation Manager Path Traversal (CVE-2021-33182)Tenable OT SecurityTenable.ot10/1/2024
medium
502471Synology DiskStation Manager Samba Out-of-bounds Read (CVE-2021-44142)Tenable OT SecurityTenable.ot10/1/2024
high
502470Synology DiskStation Manager Injection (CVE-2021-29085)Tenable OT SecurityTenable.ot10/1/2024
high
502469Synology DiskStation Manager Open Redirect (CVE-2024-0854)Tenable OT SecurityTenable.ot10/1/2024
medium
502468Synology DiskStation Manager Improper Encoding or Escaping of Output (CVE-2018-8920)Tenable OT SecurityTenable.ot10/1/2024
high
502467Synology DiskStation Manager Improper Restriction of Operations within the Bounds of a Memory Buffer (CVE-2021-26561)Tenable OT SecurityTenable.ot10/1/2024
high
502466Synology DSM HTTP/2 Implementations Uncontrolled Resource Consumption (CVE-2019-9513)Tenable OT SecurityTenable.ot10/1/2024
high
502465Synology DiskStation Manager Command Injection (CVE-2017-15889)Tenable OT SecurityTenable.ot10/1/2024
high
502464Synology DiskStation Manager NTPD Victim's Clock Modification (CVE-2018-7170)Tenable OT SecurityTenable.ot10/1/2024
medium
502463Synology DiskStation Manager Race Condition (CVE-2021-26569)Tenable OT SecurityTenable.ot10/1/2024
high
502462Synology DiskStation Manager Race Condition (CVE-2022-27626)Tenable OT SecurityTenable.ot10/1/2024
high
502461Synology DiskStation Manager Exposure of Sensitive Information to an Unauthorized Actor (CVE-2014-2264)Tenable OT SecurityTenable.ot10/1/2024
high
502460Synology DiskStation Manager Exposure of Sensitive Information to an Unauthorized Actor (CVE-2017-9554)Tenable OT SecurityTenable.ot10/1/2024
medium
502459Synology DiskStation Manager Path Traversal (CVE-2022-27610)Tenable OT SecurityTenable.ot10/1/2024
high
502458Synology DiskStation Manager Cross-site Scripting (CVE-2012-1556)Tenable OT SecurityTenable.ot10/1/2024
medium
502457Synology DiskStation Manager Improper Certificate Validation (CVE-2020-27648)Tenable OT SecurityTenable.ot10/1/2024
critical
502456Synology DiskStation Manager Use After Free (CVE-2021-27646)Tenable OT SecurityTenable.ot10/1/2024
critical
502455Synology DiskStation Manager Dnsmasq Out-of-bounds Write (CVE-2017-14491)Tenable OT SecurityTenable.ot10/1/2024
critical
502454Synology DiskStation Manager Observable Discrepancy (CVE-2017-5753)Tenable OT SecurityTenable.ot10/1/2024
medium
502453Synology DiskStation Manager Cross-site Scripting (CVE-2018-13293)Tenable OT SecurityTenable.ot10/1/2024
medium
502452Synology DiskStation Manager Incorrect Authorization (CVE-2021-26563)Tenable OT SecurityTenable.ot10/1/2024
medium
502451Synology DiskStation Manager Samba Use After Free (CVE-2019-19344)Tenable OT SecurityTenable.ot10/1/2024
medium
502450Synology DiskStation Manager Exposure of Sensitive Information to an Unauthorized Actor (CVE-2021-29086)Tenable OT SecurityTenable.ot10/1/2024
high
502449Synology DiskStation Manager NTPD Denial of Service (CVE-2018-7184)Tenable OT SecurityTenable.ot10/1/2024
high
502448Synology DiskStation Manager Incorrect Default Permissions (CVE-2018-13286)Tenable OT SecurityTenable.ot10/1/2024
medium
502447Synology DiskStation Manager Cross-site Scripting (CVE-2017-16774)Tenable OT SecurityTenable.ot10/1/2024
medium
502446Synology DiskStation Manager Exposure of Sensitive Information to an Unauthorized Actor (CVE-2022-22680)Tenable OT SecurityTenable.ot10/1/2024
high
502445Synology DiskStation Manager Exposure of Sensitive Information to an Unauthorized Actor (CVE-2015-2809)Tenable OT SecurityTenable.ot10/1/2024
medium
502444Synology DiskStation Manager Exposure of Sensitive Information to an Unauthorized Actor (CVE-2021-26566)Tenable OT SecurityTenable.ot10/1/2024
critical
502443Synology DiskStation Manager Exposure of Sensitive Information to an Unauthorized Actor (CVE-2018-8919)Tenable OT SecurityTenable.ot10/1/2024
critical
502442Synology DiskStation Manager SYNO.API.Encryption API Protection Mechanism Bypass (CVE-2017-9553)Tenable OT SecurityTenable.ot10/1/2024
high
502441Synology DSM HTTP/2 Implementations Allocation of Resources Without Limits or Throttling (CVE-2019-9517)Tenable OT SecurityTenable.ot10/1/2024
high
502440Synology DiskStation Manager Path Traversal (CVE-2021-29088)Tenable OT SecurityTenable.ot10/1/2024
high
502439Synology DiskStation Manager Permissions, Privileges, and Access Controls (CVE-2013-6955)Tenable OT SecurityTenable.ot10/1/2024
critical
502438Synology DiskStation Manager SQL Injection (CVE-2021-43927)Tenable OT SecurityTenable.ot10/1/2024
critical
502437Synology DiskStation Manager Cleartext Transmission of Sensitive Information (CVE-2020-27656)Tenable OT SecurityTenable.ot10/1/2024
low
502436Synology DiskStation Uncontrolled Resource Consumption (CVE-2017-12076)Tenable OT SecurityTenable.ot10/1/2024
medium
502435Synology DiskStation Manager Netatalk Out-of-bounds Write (CVE-2018-1160)Tenable OT SecurityTenable.ot10/1/2024
critical
502434Synology DiskStation Manager Exposure of Sensitive Information to an Unauthorized Actor (CVE-2018-13291)Tenable OT SecurityTenable.ot10/1/2024
medium
502433Synology DiskStation Manager Uncontrolled Search Path Element (CVE-2023-0142)Tenable OT SecurityTenable.ot10/1/2024
high
502432Synology DiskStation Manager OS Command Injection (CVE-2018-13284)Tenable OT SecurityTenable.ot10/1/2024
high
502431Synology DiskStation Manager Use of a Broken or Risky Cryptographic Algorithm (CVE-2020-27652)Tenable OT SecurityTenable.ot10/1/2024
high
502430Synology DiskStation Manager OS Command Injection (CVE-2022-27616)Tenable OT SecurityTenable.ot10/1/2024
high
502429Synology DiskStation Manager Server-Side Request Forgery (SSRF) (CVE-2022-27622)Tenable OT SecurityTenable.ot10/1/2024
medium
502428Synology Multiple NAS Servers Credentials Management Errors (CVE-2016-6554)Tenable OT SecurityTenable.ot10/1/2024
critical