Directory traversal vulnerability in download.php in Synology Photo Station prior to 6.5.3-3226 allows remote malicious users to read arbitrary files via a full pathname in the id parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
synology photo station |