Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Improper authorization vulnerability in SYNO.Cal.Event in Calendar before 2.1.2-0511 allows remote authenticated users to create arbitrary events via the (1) cal_id or (2) original_cal_id parameter.
CVSS Information
N/A
Vulnerability Type
授权机制不正确
Vulnerability Title
Synology Calendar 授权问题漏洞
Vulnerability Description
Synology Calendar是群晖(Synology)公司的一款运行在Synology NAS设备上的文件保护程序。 Synology Calendar 2.1.2-0511之前版本中的SYNO.Cal.Event存在授权问题漏洞。远程攻击者可借助‘cal_id’或‘original_cal_id’参数利用该漏洞创建任意事件。
CVSS Information
N/A
Vulnerability Type
N/A