CVE-2017-15888

CVE-2017-15888

Vendor Synology
Product Synology Audio Station
Weakness CWE-79 · XSS
Published October 30, 2017
Last update September 17, 2024

CVSS base score

What the vulnerability does

01Description

Cross-site scripting (XSS) vulnerability in Custom Internet Radio List in Synology Audio Station before 6.3.0-3260 allows remote authenticated attackers to inject arbitrary web script or HTML via the NAME parameter.

Key dates

02Disclosure timeline

October 30, 2017 CVE published
September 17, 2024 Record updated

Related vulnerabilities

04Related CVE