cbcvebase.

Synology Photo Station vulnerabilities

33 known vulnerabilities affecting synology/photo_station.

Total CVEs
33
CISA KEV
0
Public exploits
5
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH15MEDIUM12

Vulnerabilities

Page 1 of 2
CVE-2017-11151P1CRITICALCVSS 9.8PoC≤ 6.7.2-3429v6.3-29672017-08-08
CVE-2017-11151 [CRITICAL] CWE-287 CVE-2017-11151: A vulnerability in synotheme_upload.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 all A vulnerability in synotheme_upload.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to upload arbitrary files without authentication via the logo_upload action.
nvd
CVE-2017-11153P2CRITICALCVSS 9.8PoC≤ 6.7.2-3429v6.3-29672017-08-08
CVE-2017-11153 [CRITICAL] CWE-502 CVE-2017-11153: Deserialization vulnerability in synophoto_csPhotoMisc.php in Synology Photo Station before 6.7.3-34 Deserialization vulnerability in synophoto_csPhotoMisc.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to gain administrator privileges via a crafted serialized payload.
nvd
CVE-2017-11155P2HIGHCVSS 7.5PoC≤ 6.7.2-3429v6.3-29672017-08-08
CVE-2017-11155 [HIGH] CWE-205 CVE-2017-11155: An information exposure vulnerability in index.php in Synology Photo Station before 6.7.3-3432 and 6 An information exposure vulnerability in index.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to obtain sensitive system information via unspecified vectors.
nvd
CVE-2017-11152P2HIGHCVSS 7.5PoC≤ 6.7.2-3429v6.3-29672017-08-08
CVE-2017-11152 [HIGH] CWE-22 CVE-2017-11152: Directory traversal vulnerability in PixlrEditorHandler.php in Synology Photo Station before 6.7.3-3 Directory traversal vulnerability in PixlrEditorHandler.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to write arbitrary files via the path parameter.
nvd
CVE-2017-11154P2HIGHCVSS 7.2PoC≤ 6.7.2-3429v6.3-29672017-08-08
CVE-2017-11154 [HIGH] CWE-434 CVE-2017-11154: Unrestricted file upload vulnerability in PixlrEditorHandler.php in Synology Photo Station before 6. Unrestricted file upload vulnerability in PixlrEditorHandler.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to create arbitrary PHP scripts via the type parameter.
nvd
CVE-2016-10329P2CRITICALCVSS 9.8≤ 6.5.2-32252017-05-12
CVE-2016-10329 [CRITICAL] CWE-77 CVE-2016-10329: Command injection vulnerability in login.php in Synology Photo Station before 6.5.3-3226 allows remo Command injection vulnerability in login.php in Synology Photo Station before 6.5.3-3226 allows remote attackers to execute arbitrary code via shell metacharacters in the crafted 'X-Forwarded-For' header.
nvd
CVE-2021-29089P3CRITICALCVSS 9.8≥ 6.8, < 6.8.14-35002021-06-02
CVE-2021-29089 [CRITICAL] CWE-89 CVE-2021-29089: Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability i Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in thumbnail component in Synology Photo Station before 6.8.14-3500 allows remote attackers users to execute arbitrary SQL commands via unspecified vectors.
nvd
CVE-2019-11821P3CRITICALCVSS 9.8≥ 6.3, < 6.3-2977≥ 6.8, < 6.8.11-3489+2 more2019-06-30
CVE-2019-11821 [CRITICAL] CWE-89 CVE-2019-11821: SQL injection vulnerability in synophoto_csPhotoDB.php in Synology Photo Station before 6.8.11-3489 SQL injection vulnerability in synophoto_csPhotoDB.php in Synology Photo Station before 6.8.11-3489 and before 6.3-2977 allows remote attackers to execute arbitrary SQL command via the type parameter.
nvd
CVE-2017-11161P3CRITICALCVSS 9.8≤ 6.3-2967≤ 6.7.3-34322017-09-08
CVE-2017-11161 [CRITICAL] CWE-89 CVE-2017-11161: Multiple SQL injection vulnerabilities in Synology Photo Station before 6.7.4-3433 and 6.3-2968 allo Multiple SQL injection vulnerabilities in Synology Photo Station before 6.7.4-3433 and 6.3-2968 allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter to label.php; or (2) type parameter to synotheme.php.
nvd
CVE-2021-29092P3HIGHCVSS 8.8≥ 6.8, < 6.8.14-35002021-06-01
CVE-2021-29092 [HIGH] CWE-434 CVE-2021-29092: Unrestricted upload of file with dangerous type vulnerability in file management component in Synolo Unrestricted upload of file with dangerous type vulnerability in file management component in Synology Photo Station before 6.8.14-3500 allows remote authenticated users to execute arbitrary code via unspecified vectors.
nvd
CVE-2016-10322P3HIGHCVSS 8.8≤ 6.3-29542017-04-10
CVE-2016-10322 [HIGH] CWE-77 CVE-2016-10322: Synology Photo Station before 6.3-2958 allows remote authenticated guest users to execute arbitrary Synology Photo Station before 6.3-2958 allows remote authenticated guest users to execute arbitrary commands via shell metacharacters in the X-Forwarded-For HTTP header to photo/login.php.
nvd
CVE-2017-16772P3HIGHCVSS 8.8≥ 6.8, < 6.8.3-3463≥ 6.3, < 6.3-2971+2 more2018-03-22
CVE-2017-16772 [HIGH] CWE-434 CVE-2017-16772: Improper input validation vulnerability in SYNOPHOTO_Flickr_MultiUpload in Synology Photo Station be Improper input validation vulnerability in SYNOPHOTO_Flickr_MultiUpload in Synology Photo Station before 6.8.3-3463 and before 6.3-2971 allows remote authenticated users to execute arbitrary codes via the prog_id parameter.
nvd
CVE-2018-8926P3HIGHCVSS 8.8≥ 6.3-2958, ≤ 6.3-2975≥ 6.8.0-3456, < 6.8.5-3471+2 more2018-06-08
CVE-2018-8926 [HIGH] CWE-625 CVE-2018-8926: Permissive regular expression vulnerability in synophoto_dsm_user in Synology Photo Station before 6 Permissive regular expression vulnerability in synophoto_dsm_user in Synology Photo Station before 6.8.5-3471 and before 6.3-2975 allows remote authenticated users to conduct privilege escalation attacks via the fullname parameter.
nvd
CVE-2017-12079P3HIGHCVSS 7.5≥ 6.8, < 6.8.1-3458≥ 6.3, < 6.3-2970+2 more2017-12-04
CVE-2017-12079 [HIGH] CWE-552 CVE-2017-12079: Files or directories accessible to external parties vulnerability in picasa.php in Synology Photo St Files or directories accessible to external parties vulnerability in picasa.php in Synology Photo Station before 6.8.1-3458 and before 6.3-2970 allows remote attackers to obtain arbitrary files via prog_id field.
nvd
CVE-2021-29090P3HIGHCVSS 7.2≥ 6.8, < 6.8.14-35002021-06-02
CVE-2021-29090 [HIGH] CWE-89 CVE-2021-29090: Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability i Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in PHP component in Synology Photo Station before 6.8.14-3500 allows remote authenticated users to execute arbitrary SQL command via unspecified vectors.
nvd
CVE-2016-10331P3HIGHCVSS 7.5≤ 6.5.2-32252017-05-12
CVE-2016-10331 [HIGH] CWE-22 CVE-2016-10331: Directory traversal vulnerability in download.php in Synology Photo Station before 6.5.3-3226 allows Directory traversal vulnerability in download.php in Synology Photo Station before 6.5.3-3226 allows remote attackers to read arbitrary files via a full pathname in the id parameter.
nvd
CVE-2022-22681P3HIGHCVSS 7.5fixed in 6.8.16-3506≥ unspecified, < 6.8.16-35062022-07-06
CVE-2022-22681 [HIGH] CWE-384 CVE-2022-22681: Session fixation vulnerability in access control management in Synology Photo Station before 6.8.16- Session fixation vulnerability in access control management in Synology Photo Station before 6.8.16-3506 allows remote attackers to bypass security constraint via unspecified vectors.
nvd
CVE-2019-11822P3MEDIUMCVSS 6.5≥ 6.3, < 6.3-2977≥ 6.8, < 6.8.11-3489+2 more2019-06-30
CVE-2019-11822 [MEDIUM] CWE-23 CVE-2019-11822: Relative path traversal vulnerability in SYNO.PhotoStation.File in Synology Photo Station before 6.8 Relative path traversal vulnerability in SYNO.PhotoStation.File in Synology Photo Station before 6.8.11-3489 and before 6.3-2977 allows remote attackers to upload arbitrary files via the uploadphoto parameter.
nvd
CVE-2016-10323P3HIGHCVSS 7.8fixed in 6.3-29582017-04-10
CVE-2016-10323 [HIGH] CWE-264 CVE-2016-10323: Synology Photo Station before 6.3-2958 allows local users to gain privileges by leveraging setuid ex Synology Photo Station before 6.3-2958 allows local users to gain privileges by leveraging setuid execution of a "synophoto_dsm_user --copy-no-ea" command.
nvd
CVE-2018-8925P3HIGHCVSS 8.8≥ 6.3-2944, < 6.3-2975≥ 6.8.0-3456, < 6.8.5-3471+2 more2018-06-08
CVE-2018-8925 [HIGH] CWE-352 CVE-2018-8925: Cross-site request forgery (CSRF) vulnerability in admin/user.php in Synology Photo Station before 6 Cross-site request forgery (CSRF) vulnerability in admin/user.php in Synology Photo Station before 6.8.5-3471 and before 6.3-2975 allows remote attackers to hijack the authentication of administrators via the (1) username, (2) password, (3) admin, (4) action, (5) uid, or (6) modify_admin parameter.
nvd
Synology Photo Station vulnerabilities | cvebase