Posted by bashis on Feb 22
Greetings,
1. Seems to be possible bypass the default enabled “Auto Block of IP address” functionality in Synologic’s NAS by using
only one single space (x20) to the HTTP header “X-FORWARDED-FOR”
(If already Auto Blocked, this bypass will _not_ work)
Generates in /var/log/messages: 2017-02-21T20:39:13+02:00 VirtualDSM_8451 login.cgi: login.c:1039 login.c (1039)Bad
parameter :”
Bypassing whole function that…