Lucene search

K
cvelistSynologyCVELIST:CVE-2017-9555
HistoryAug 24, 2017 - 7:00 p.m.

CVE-2017-9555

2017-08-2419:00:00
CWE-79
synology
www.cve.org
8

EPSS

0.001

Percentile

21.6%

Cross-site scripting (XSS) vulnerability in PixlrEditorHandler.php in Synology Photo Station before 6.7.0-3414 allows remote attackers to inject arbitrary web script or HTML via the image parameter.

CNA Affected

[
  {
    "product": "Synology Photo Station",
    "vendor": "Synology",
    "versions": [
      {
        "status": "affected",
        "version": "before 6.7.0-3414"
      }
    ]
  }
]

EPSS

0.001

Percentile

21.6%

Related for CVELIST:CVE-2017-9555