Cross-Site Scripting Vulnerability in Synology Audio Station
CVE-2015-9104
5.4MEDIUM
What is CVE-2015-9104?
The Synology Audio Station software is vulnerable to cross-site scripting attacks, allowing remote authenticated users to inject potentially malicious web scripts or HTML content through the manipulation of the album title. This can lead to unauthorized actions or the disclosure of sensitive information when other users access the compromised content.
Affected Version(s)
Audio Station 5.1
Audio Station 5.4