CVE-2021-33180
Improper neutralization of special elements used in an SQL command (‘SQL Injection’) vulnerability in cgi component in Synology Media Server before 1.8.1-2876 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Date published : 2021-06-01
https://www.synology.com/security/advisory/Synology_SA_20_24
