Security Advisory

CVE-2018-8914

7.3
HIGH

Vulnerability Description

SQL injection vulnerability in UPnP DMA in Synology Media Server before 1.7.6-2842 and before 1.4-2654 allows remote attackers to execute arbitrary SQL commands via the ObjectID parameter.
Published Date May 10, 2018
Official Source NIST NVD Advisory