Information Exposure Vulnerability in Synology Drive by Synology
CVE-2018-13297
5.3MEDIUM
What is CVE-2018-13297?
An information exposure vulnerability exists in Synology Drive that impacts versions prior to 1.1.2-10562. This issue enables remote attackers to gain unauthorized access to sensitive system information through manipulation of the dsm_path parameter, potentially compromising the security of the system. Users are advised to upgrade to the latest version to mitigate this risk.
Affected Version(s)
Drive < 1.1.2-10562