Vulnerabilities > Synology > Video Station > High

DATE CVE VULNERABILITY TITLE RISK
2015-09-11 CVE-2015-6911 SQL Injection vulnerability in Synology Video Station
SQL injection vulnerability in Synology Video Station before 1.5-0763 allows remote attackers to execute arbitrary SQL commands via the id parameter to watchstatus.cgi.
network
low complexity
synology CWE-89
7.5
2015-09-11 CVE-2015-6910 SQL Injection vulnerability in Synology Video Station
SQL injection vulnerability in Synology Video Station before 1.5-0757 allows remote attackers to execute arbitrary SQL commands via the id parameter to audiotrack.cgi.
network
low complexity
synology CWE-89
7.5