CVE-2018-13282
31.10.2018, 16:29
Session fixation vulnerability in SYNO.PhotoStation.Auth in Synology Photo Station before 6.8.7-3481 allows remote attackers to hijack web sessions via the PHPSESSID parameter.Enginsight
Vendor | Product | Version |
---|---|---|
synology | photo_station | 6.3 ≤ 𝑥 < 6.3-2976 |
synology | photo_station | 6.8 ≤ 𝑥 < 6.8.7-3481 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration