Security Advisory

CVE-2023-47803

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-06-28 06:03:01
Last updated 2024-08-02 21:16:43
Assigner synology
State PUBLISHED

Description

A vulnerability regarding improper limitation of a pathname to a restricted directory (Path Traversal) is found in the Language Settings functionality. This allows remote attackers to read specific files containing non-sensitive information via unspecified vectors. The following models with Synology Camera Firmware versions before 1.0.7-0298 may be affected: BC500 and TC500.