CVE-2024-32768: Photo Station
A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow remote attackers who have gained user access to inject malicious code.
We have already fixed the vulnerability in the following version: Photo Station 6.4.3 ( 2024/07/12 ) and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-32768?
CVE-2024-32768 has a high severity level due to its potential to allow remote code injection through cross-site scripting.
How do I fix CVE-2024-32768?
To remediate CVE-2024-32768, upgrade to Photo Station version 6.4.3 or later.
Who is affected by CVE-2024-32768?
CVE-2024-32768 affects users of Synology Photo Station versions prior to 6.4.3.
What type of vulnerability is CVE-2024-32768?
CVE-2024-32768 is classified as a cross-site scripting (XSS) vulnerability.
What are the potential impacts of CVE-2024-32768?
If exploited, CVE-2024-32768 could allow remote attackers to inject malicious code into the application.