High severity7.5NVD Advisory· Published Dec 4, 2017· Updated May 13, 2026
CVE-2017-12079
CVE-2017-12079
Description
Files or directories accessible to external parties vulnerability in picasa.php in Synology Photo Station before 6.8.1-3458 and before 6.3-2970 allows remote attackers to obtain arbitrary files via prog_id field.
Affected products
1- Synology/Photo Stationv5Range: before 6.8.1-3458
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.