CVE Published: 12/05/2017 |
CVE Updated: 06/08/2024 |
CVE Year: 2016 Source: synology |
Vendor: Synology |
Product: Synology Photo Station Status : PUBLISHED
CVE-2016-10329 Description
Command injection vulnerability in login.php in Synology Photo Station before 6.5.3-3226 allows remote attackers to execute arbitrary code via shell metacharacters in the crafted \'X-Forwarded-For\' header.