Security Advisory

CVE-2018-13293

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-04-01 14:28:46
Last updated 2024-09-17 02:21:57
Assigner synology
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Control Panel SSO Settings in Synology DiskStation Manager (DSM) before 6.2.1-23824 allows remote authenticated users to inject arbitrary web script or HTML via the URL parameter.