Security Advisory

CVE-2017-11151

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-08-08 15:00:00
Last updated 2024-09-16 16:52:46
Assigner synology
CVSS score not scored
State PUBLISHED

Description

A vulnerability in synotheme_upload.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to upload arbitrary files without authentication via the logo_upload action.