An information exposure vulnerability in index.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to obta…
An information exposure vulnerability in index.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to obtain sensitive system information via unspecified vectors.
The product's behaviors indicate important differences that may be observed by unauthorized actors in a way that reveals (1) its internal state or decision process, or (2) differences from other products with equivalent functionality.
https://cwe.mitre.org/data/definitions/205.html →Open in CWE collection →An adversary engages in fingerprinting activities to determine the type or version of an application installed on a remote target.
https://capec.mitre.org/data/definitions/541.html →Open in CAPEC collection →An adversary engages in active probing and exploration activities to determine security information about a remote target system. Often times adversaries will rely on remote applications that can be probed for system configurations.
https://capec.mitre.org/data/definitions/580.html →Open in CAPEC collection →