3.5
CVSSv2

CVE-2015-9103

Published: 30/06/2017 Updated: 09/10/2019
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in Synology Note Station 1.1-0212 and previous versions allow remote authenticated malicious users to inject arbitrary web script or HTML via the (1) note title or (2) file name of attachments.

Vulnerable Product Search on Vulmon Subscribe to Product

synology note station