Security Advisory

CVE-2017-16766

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-12-22 14:00:00
Last updated 2024-09-17 03:53:49
Assigner synology
State PUBLISHED

Description

An improper access control vulnerability in synodsmnotify in Synology DiskStation Manager (DSM) before 6.1.4-15217 and before 6.0.3-8754-6 allows local users to inject arbitrary web script or HTML via the -fn option.