High severity7.2NVD Advisory· Published Jun 28, 2024· Updated Jun 17, 2026
CVE-2023-47802
CVE-2023-47802
Description
A vulnerability regarding improper neutralization of special elements used in an OS command ('OS Command Injection') is found in the IP block functionality. This allows remote authenticated users with administrator privileges to execute arbitrary commands via unspecified vectors. The following models with Synology Camera Firmware versions before 1.0.7-0298 may be affected: BC500 and TC500.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
41.0+ 1 more
- (no CPE)range: 1.0
- (no CPE)range: <1.0.7-0298
Patches
Vulnerability mechanics
References
1- www.synology.com/en-global/security/advisory/Synology_SA_23_15nvdVendor Advisory
News mentions
0No linked articles in our index yet.