CVE-2017-12075 | Synology DiskStation Manager up to 6.2 EZ-Internet username command injection (SA_18_24)
A vulnerability classified as critical has been found in Synology DiskStation Manager up to 6.2. This affects an unknown part of the component EZ-Internet. The manipulation of the argument username as part of Parameter leads to command injection.
This vulnerability is uniquely identified as CVE-2017-12075. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.