Disclosure List

ProductTitleCVEAdvisoryReport
Synology - Surveillance StationArbitrary Picture DownloadCVE CVE-2017-16770Synology SA-17:77Report
Synology - Photo StationPrivilege Escalation and CSRFCVE CVE-2018-8925 CVE CVE-2018-8926Synology SA-18:15Report
Synology - MomentsRoot command executionCVE CVE-2019-11826Synology SA-19:05
Synology - CalendarUnauthenticated Command ExecutionCVE CVE-2019-11829Synology SA-19:12
Synology - Safe AccessMultiple VulnerabilitiesCVE CVE-2020-27659 CVE CVE-2020-27660Synology SA-20:25Report
Synology SRMReset router with a user accountSynology SA-20:22
SoPlanningSharing Key BypassCVE CVE-2020-25867Report
QNAP - VideoStationUser RCE as RootCVE CVE-2021-28812QNAP QSA-21-21
QNAP - HelpdeskUser enable access to SSH as rootCVE CVE-2021-28814QNAP QSA-21-25Report
Synology - File StationStored XSSCVE CVE-2021-43929Synology SA-22:01
QNAP - VideoStationMultiple VulnerabilitiesCVE CVE-2021-44055 CVE CVE-2021-44056QNAP QSA-22-14Report
QNAP - PhotoStationApplication Privileges Checking BypassCVE CVE-2021-44057QNAP QSA-22-15Report
QNAP - License CenterAuthenticated remote code executionCVE CVE-2024-21903QNAP QSA-24-25Report
QNAP - Music StationUnauthenticated file read and authentication bypassCVE CVE-2023-45038QNAP QSA-24-25Report