CVE Published: 30/06/2017 |
CVE Updated: 17/09/2024 |
CVE Year: 2015 Source: synology |
Vendor: Synology |
Product: Note Station Status : PUBLISHED
CVE-2015-9103 Description
Multiple cross-site scripting (XSS) vulnerabilities in Synology Note Station 1.1-0212 and earlier allow remote authenticated attackers to inject arbitrary web script or HTML via the (1) note title or (2) file name of attachments.