Security Advisory

CVE-2018-13281

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-10-31 16:00:00
Last updated 2024-09-16 23:56:58
Assigner synology
CVSS score 4.3
State PUBLISHED

Description

Information exposure vulnerability in SYNO.Core.ACL in Synology DiskStation Manager (DSM) before 6.2-23739-2 allows remote authenticated users to determine the existence and obtain the metadata of arbitrary files via the file_path parameter.