CVE-2019-11820: Medium severity synology calendar vulnerability
Information exposure through process environment vulnerability in Synology Calendar before 2.3.3-0620 allows local users to obtain credentials via cmdline.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-11820?
CVE-2019-11820 is an information exposure through process environment vulnerability in Synology Calendar before version 2.3.3-0620.
What is the severity of CVE-2019-11820?
The severity of CVE-2019-11820 is medium with a CVSS score of 5.5.
How does CVE-2019-11820 impact Synology Calendar?
CVE-2019-11820 allows local users to obtain credentials via the command line in Synology Calendar.
How can I fix CVE-2019-11820?
To fix CVE-2019-11820, ensure that you have updated to the latest version of Synology Calendar, specifically version 2.3.3-0620 or higher.
Where can I find more information about CVE-2019-11820?
You can find more information about CVE-2019-11820 in the Synology security advisory Synology_SA_19_21 at https://www.synology.com/security/advisory/Synology_SA_19_21.