Skip to main content

Vendor/product archive

synology / chat CVEs

Beta · best-effort

3 CVEs tagged to synology / chat0 Critical, 0 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2017-15892

Published Dec 28, 2017

Multiple cross-site scripting (XSS) vulnerabilities in Slash Command Creator in Synology Chat before 2.0.0-1124 allow remote authenticated users to inject arbitrary web script or…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-15886

Published Dec 28, 2017

Server-side request forgery (SSRF) vulnerability in Link Preview in Synology Chat before 2.0.0-1124 allows remote authenticated users to download arbitrary local files via a craft…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-11148

Published Aug 11, 2017

Server-side request forgery (SSRF) vulnerability in link preview in Synology Chat before 1.1.0-0806 allows remote authenticated users to access intranet resources via unspecified…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1