A vulnerability regarding improper limitation of a pathname to a restricted directory ('Path Traversal') is found in the Language Settings functionality. This allows remote attackers to read specific files containing non-sensitive information via unspecified vectors. The following models with Synology Camera Firmware versions before 1.0.7-0298 may be affected: BC500 and TC500.
References

No reference.

History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: synology

Published: 2024-06-28T06:03:01.476Z

Updated: 2024-07-08T20:35:17.628Z

Reserved: 2023-11-10T07:59:45.608Z


Link: CVE-2023-47803

JSON object: View

cve-icon NVD Information

No data.

cve-icon Redhat Information

No data.

CWE