CVE-2023-47803: Path Traversal
A vulnerability regarding improper limitation of a pathname to a restricted directory ('Path Traversal') is found in the Language Settings functionality. This allows remote attackers to read specific files containing non-sensitive information via unspecified vectors. The following models with Synology Camera Firmware versions before 1.0.7-0298 may be affected: BC500 and TC500.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-47803?
CVE-2023-47803 is classified as a low severity vulnerability.
How do I fix CVE-2023-47803?
To fix CVE-2023-47803, update your Synology Camera Firmware to version 1.0.7-0299 or later.
What does CVE-2023-47803 exploit?
CVE-2023-47803 exploits improper limitation of a pathname to a restricted directory, allowing unauthorized file access.
What models are affected by CVE-2023-47803?
CVE-2023-47803 affects Synology Camera Firmware versions up to 1.0.7-0298.
What kind of information can be accessed due to CVE-2023-47803?
CVE-2023-47803 allows attackers to read specific files containing non-sensitive information.