CVE Published: 31/10/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: synology |
Vendor: Synology |
Product: Photo Station Status : PUBLISHED
CVE-2018-13282 Description
Session fixation vulnerability in SYNO.PhotoStation.Auth in Synology Photo Station before 6.8.7-3481 allows remote attackers to hijack web sessions via the PHPSESSID parameter.