First published: Fri Jun 28 2024(Updated: )
A vulnerability regarding improper limitation of a pathname to a restricted directory ('Path Traversal') is found in the Language Settings functionality. This allows remote attackers to read specific files containing non-sensitive information via unspecified vectors. The following models with Synology Camera Firmware versions before 1.0.7-0298 may be affected: BC500 and TC500.
Credit: security@synology.com
Affected Software | Affected Version | How to fix |
---|---|---|
Synology Camera Firmware | <1.0.7-0298 | |
All of | ||
<1.0.7-0298 | ||
All of | ||
<1.0.7-0298 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47803 is classified as a low severity vulnerability.
To fix CVE-2023-47803, update your Synology Camera Firmware to version 1.0.7-0299 or later.
CVE-2023-47803 exploits improper limitation of a pathname to a restricted directory, allowing unauthorized file access.
CVE-2023-47803 affects Synology Camera Firmware versions up to 1.0.7-0298.
CVE-2023-47803 allows attackers to read specific files containing non-sensitive information.