Vulnerability Description
Directory traversal vulnerability in download.php in Synology Photo Station before 6.5.3-3226 allows remote attackers to read arbitrary files via a full pathname in the id parameter.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Synology | Photo Station | <= 6.5.2-3225 |
Related Weaknesses (CWE)
References
- https://bamboofox.github.io/2017/03/20/Synology-Bug-Bounty-2016/#Vul-06-Local-FiExploitThird Party Advisory
- https://www.synology.com/en-global/support/security/Photo_Station_6_5_3_3226Release Notes
- https://bamboofox.github.io/2017/03/20/Synology-Bug-Bounty-2016/#Vul-06-Local-FiExploitThird Party Advisory
- https://www.synology.com/en-global/support/security/Photo_Station_6_5_3_3226Release Notes
FAQ
What is CVE-2016-10331?
CVE-2016-10331 is a vulnerability with a CVSS score of 7.5 (HIGH). Directory traversal vulnerability in download.php in Synology Photo Station before 6.5.3-3226 allows remote attackers to read arbitrary files via a full pathname in the id parameter.
How severe is CVE-2016-10331?
CVE-2016-10331 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-10331?
Check the references section above for vendor advisories and patch information. Affected products include: Synology Photo Station.