cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2019-11828,https://securityvulnerability.io/vulnerability/CVE-2019-11828,,Cross-site scripting (XSS) vulnerability in Chart in Synology Office before 3.1.4-2771 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.,Synology,Office,5.5,MEDIUM,0.000539999979082495,false,,false,false,false,,,false,false,,2019-06-30T00:00:00.000Z,0 CVE-2018-8924,https://securityvulnerability.io/vulnerability/CVE-2018-8924,,Cross-site scripting (XSS) vulnerability in Title Tootip in Synology Office before 3.0.3-2143 allows remote authenticated users to inject arbitrary web script or HTML via the malicious file name.,Synology,Office,6.5,MEDIUM,0.000539999979082495,false,,false,false,false,,,false,false,,2018-06-05T00:00:00.000Z,0 CVE-2017-11150,https://securityvulnerability.io/vulnerability/CVE-2017-11150,,Command injection vulnerability in Document.php in Synology Office 2.2.0-1502 and 2.2.1-1506 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the crafted file name of RTF documents.,Synology,Office,7.8,HIGH,0.0008099999977275729,false,,false,false,false,,,false,false,,2017-08-14T19:29:00.000Z,0