CVE-2017-11155: Infoleak
Published Aug 8, 2017
·Updated
An information exposure vulnerability in index.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to obtain sensitive system information via unspecified vectors.
Affected Software
2 affected components
Synology Photo Station<=6.7.2-3429
Synology Photo Station=6.3-2967
Event History
Aug 8, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-11155?
The severity of CVE-2017-11155 is classified as moderate due to the potential exposure of sensitive system information.
2
How do I fix CVE-2017-11155?
To fix CVE-2017-11155, upgrade Synology Photo Station to version 6.7.3-3432 or later, or 6.3-2968 or later.
3
What type of vulnerability is CVE-2017-11155?
CVE-2017-11155 is an information exposure vulnerability.
4
What could be the impact of CVE-2017-11155?
The impact of CVE-2017-11155 includes the risk of remote attackers obtaining sensitive system information.
5
Which versions of Synology Photo Station are affected by CVE-2017-11155?
CVE-2017-11155 affects Synology Photo Station versions prior to 6.7.3-3432 and version 6.3-2967.