CVE Database
/

CVE-2017-11154

Back to search

CVE-2017-11154

Published: Aug 8, 2017

Modified: Sep 17, 2024

PUBLISHED

Description

Unrestricted file upload vulnerability in PixlrEditorHandler.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to create arbitrary PHP scripts via the type parameter.

VendorProductVersions

Synology

Synology Photo Station

affected
before 6.7.3-3432 and 6.3-2967

Weaknesses (CWE)

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now