CVE-2015-9104
30.06.2017, 13:29
Cross-site scripting (XSS) vulnerabilities in Synology Audio Station 5.1 before 5.1-2550 and 5.4 before 5.4-2857 allows remote authenticated attackers to inject arbitrary web script or HTML via the album title.
Vendor | Product | Version |
---|---|---|
synology | audio_station | 5.1-2541 |
synology | audio_station | 5.1-2542 |
synology | audio_station | 5.1-2547 |
synology | audio_station | 5.1-2549 |
synology | audio_station | 5.4-2852 |
synology | audio_station | 5.4-2853 |
synology | audio_station | 5.4-2855 |
𝑥
= Vulnerable software versions