Description
Information exposure vulnerability in SYNO.Core.ACL in Synology Router Manager (SRM) before 1.1.7-6941-2 allows remote authenticated users to determine the existence of files or obtain sensitive information of files via the file_path parameter.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-5238 | Information exposure vulnerability in SYNO.Core.ACL in Synology Router Manager (SRM) before 1.1.7-6941-2 allows remote authenticated users to determine the existence of files or obtain sensitive information of files via the file_path parameter. |
References
| Link | Providers |
|---|---|
| https://www.synology.com/security/advisory/Synology_SA_18_48 |
|
History
No history.
Status: PUBLISHED
Assigner: synology
Published:
Updated: 2024-09-17T02:01:20.445Z
Reserved: 2018-07-05T00:00:00.000Z
Link: CVE-2018-13290
No data.
Status : Modified
Published: 2019-04-01T15:29:00.593
Modified: 2024-11-21T03:46:46.150
Link: CVE-2018-13290
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD