Lucene search

K

Ssl Vpn Client Security Vulnerabilities

cve
cve

CVE-2018-13283

Lack of administrator control over security vulnerability in client.cgi in Synology SSL VPN Client before 1.2.5-0226 allows remote attackers to conduct man-in-the-middle attacks via the (1) command, (2) hostname, or (3) port parameter.

8.8CVSS

7.3AI Score

0.001EPSS

2019-04-01 03:29 PM
25
cve
cve

CVE-2018-8929

Improper restriction of communication channel to intended endpoints vulnerability in HTTP daemon in Synology SSL VPN Client before 1.2.4-0224 allows remote attackers to conduct man-in-the-middle attacks via a crafted payload.

8.1CVSS

7.8AI Score

0.001EPSS

2018-07-06 12:29 PM
27
cve
cve

CVE-2023-5748

Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in cgi component in Synology SSL VPN Client before 1.4.7-0687 allows local users to conduct denial-of-service attacks via unspecified vectors.

5.5CVSS

5.3AI Score

0.0004EPSS

2023-11-07 04:24 AM
18