CVE-2017-16771
22.03.2018, 14:29
Cross-site scripting (XSS) vulnerability in Log Viewer in Synology Photo Station before 6.8.3-3463 and before 6.3-2971 allows remote attackers to inject arbitrary web script or HTML via the username parameter.
Vendor | Product | Version |
---|---|---|
synology | photo_station | 6.8 ≤ 𝑥 < 6.8.3-3463 |
synology | photo_station | 6.3 ≤ 𝑥 < 6.3-2971 |
𝑥
= Vulnerable software versions