SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Synology DiskStation Manager Remote Code Execution

Category: WEB-ATTACKS      

Synology DiskStation Manager (DSM) contains a flaw in the SliceUpload functionality provided by /webman/imageSelector.cgi. With a specially crafted request, a remote attacker can append data to files, allowing for the execution of arbitrary commands.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6955


Relevant Information