Vulnerabilities (CVE)

Filtered by vendor Synology Subscribe
Filtered by product Carddav Server
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-15887 1 Synology 1 Carddav Server 2019-10-09 5.0 MEDIUM 9.8 CRITICAL
An improper restriction of excessive authentication attempts vulnerability in /principals in Synology CardDAV Server before 6.0.7-0085 allows remote attackers to obtain user credentials via a brute-force attack.