Medium severity4.3NVD Advisory· Published Apr 1, 2019· Updated Jun 17, 2026
CVE-2018-13299
CVE-2018-13299
Description
Relative path traversal vulnerability in Attachment Uploader in Synology Calendar before 2.2.2-0532 allows remote authenticated users to upload arbitrary files via the filename parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- www.synology.com/security/advisory/Synology_SA_18_54nvdVendor Advisory
News mentions
0No linked articles in our index yet.