CVE-2016-10329
12.05.2017, 20:29
Command injection vulnerability in login.php in Synology Photo Station before 6.5.3-3226 allows remote attackers to execute arbitrary code via shell metacharacters in the crafted 'X-Forwarded-For' header.
Vendor | Product | Version |
---|---|---|
synology | photo_station | 𝑥 ≤ 6.5.2-3225 |
𝑥
= Vulnerable software versions
References