Cross-Site Request Forgery (CSRF) vulnerability in webapi component in Synology Calendar before 2.3.4-0631 allows remote authenticated users to hijack the authentication of administrators via unspecified vectors.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.synology.com/security/advisory/Synology_SA_20_07 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: synology
Published: 2022-07-26T01:30:14.703526Z
Updated: 2024-09-16T19:14:33.307Z
Reserved: 2022-01-05T00:00:00
Link: CVE-2022-22686
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-07-26T02:15:07.923
Modified: 2024-11-21T06:47:16.103
Link: CVE-2022-22686
Redhat
No data.