Vulnerability Details CVE-2017-16774
Cross-site scripting (XSS) vulnerability in SYNO.Core.PersonalNotification.Event in Synology DiskStation Manager (DSM) before 6.1.4-15217-3 allows remote authenticated users to inject arbitrary web script or HTML via the package parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 51.2%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 3.5
Products affected by CVE-2017-16774
-
cpe:2.3:o:synology:diskstation_manager:5.2
-
cpe:2.3:o:synology:diskstation_manager:5.2-5565
-
cpe:2.3:o:synology:diskstation_manager:5.2-5565-1
-
cpe:2.3:o:synology:diskstation_manager:5.2-5565-2
-
cpe:2.3:o:synology:diskstation_manager:5.2-5592
-
cpe:2.3:o:synology:diskstation_manager:5.2-5592-1
-
cpe:2.3:o:synology:diskstation_manager:5.2-5592-2
-
cpe:2.3:o:synology:diskstation_manager:5.2-5592-3
-
cpe:2.3:o:synology:diskstation_manager:5.2-5592-4
-
cpe:2.3:o:synology:diskstation_manager:5.2-5620
-
cpe:2.3:o:synology:diskstation_manager:5.2-5644
-
cpe:2.3:o:synology:diskstation_manager:5.2-5644-1
-
cpe:2.3:o:synology:diskstation_manager:5.2-5644-2
-
cpe:2.3:o:synology:diskstation_manager:5.2-5644-3
-
cpe:2.3:o:synology:diskstation_manager:5.2-5644-5
-
cpe:2.3:o:synology:diskstation_manager:5.2-5644-8
-
cpe:2.3:o:synology:diskstation_manager:5.2-5967
-
cpe:2.3:o:synology:diskstation_manager:5.2-5967-1
-
cpe:2.3:o:synology:diskstation_manager:5.2-5967-2
-
cpe:2.3:o:synology:diskstation_manager:5.2-5967-3
-
cpe:2.3:o:synology:diskstation_manager:5.2-5967-4
-
cpe:2.3:o:synology:diskstation_manager:5.2-5967-5
-
cpe:2.3:o:synology:diskstation_manager:5.2-5967-6
-
cpe:2.3:o:synology:diskstation_manager:5.2-5967-7
-
cpe:2.3:o:synology:diskstation_manager:5.2-5967-8
-
cpe:2.3:o:synology:diskstation_manager:5.2-5967-9
-
cpe:2.3:o:synology:diskstation_manager:6.0
-
cpe:2.3:o:synology:diskstation_manager:6.0-7321
-
cpe:2.3:o:synology:diskstation_manager:6.0-7321-1
-
cpe:2.3:o:synology:diskstation_manager:6.0-7321-2
-
cpe:2.3:o:synology:diskstation_manager:6.0-7321-3
-
cpe:2.3:o:synology:diskstation_manager:6.0-7321-5
-
cpe:2.3:o:synology:diskstation_manager:6.0-7321-6
-
cpe:2.3:o:synology:diskstation_manager:6.0.1-7393
-
cpe:2.3:o:synology:diskstation_manager:6.0.1-7393-1
-
cpe:2.3:o:synology:diskstation_manager:6.0.1-7393-2
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451-1
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451-10
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451-2
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451-3
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451-4
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451-5
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451-6
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451-7
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451-8
-
cpe:2.3:o:synology:diskstation_manager:6.0.2-8451-9
-
cpe:2.3:o:synology:diskstation_manager:6.0.3-8754
-
cpe:2.3:o:synology:diskstation_manager:6.0.3-8754-1
-
cpe:2.3:o:synology:diskstation_manager:6.0.3-8754-3
-
cpe:2.3:o:synology:diskstation_manager:6.0.3-8754-4
-
cpe:2.3:o:synology:diskstation_manager:6.0.3-8754-8
-
cpe:2.3:o:synology:diskstation_manager:6.1
-
cpe:2.3:o:synology:diskstation_manager:6.1-15047
-
cpe:2.3:o:synology:diskstation_manager:6.1-15047-1
-
cpe:2.3:o:synology:diskstation_manager:6.1-15047-2
-
cpe:2.3:o:synology:diskstation_manager:6.1.1
-
cpe:2.3:o:synology:diskstation_manager:6.1.1-15101
-
cpe:2.3:o:synology:diskstation_manager:6.1.1-15101-1
-
cpe:2.3:o:synology:diskstation_manager:6.1.1-15101-2
-
cpe:2.3:o:synology:diskstation_manager:6.1.1-15101-3
-
cpe:2.3:o:synology:diskstation_manager:6.1.1-15101-4
-
cpe:2.3:o:synology:diskstation_manager:6.1.2-15132
-
cpe:2.3:o:synology:diskstation_manager:6.1.2-15132-1
-
cpe:2.3:o:synology:diskstation_manager:6.1.3-15152
-
cpe:2.3:o:synology:diskstation_manager:6.1.3-15152-1
-
cpe:2.3:o:synology:diskstation_manager:6.1.3-15152-3
-
cpe:2.3:o:synology:diskstation_manager:6.1.3-15152-4
-
cpe:2.3:o:synology:diskstation_manager:6.1.3-15152-5
-
cpe:2.3:o:synology:diskstation_manager:6.1.3-15152-6
-
cpe:2.3:o:synology:diskstation_manager:6.1.3-15152-7
-
cpe:2.3:o:synology:diskstation_manager:6.1.3-15152-8
-
cpe:2.3:o:synology:diskstation_manager:6.1.4-15217
-
cpe:2.3:o:synology:diskstation_manager:6.1.4-15217-1
-
cpe:2.3:o:synology:diskstation_manager:6.1.4-15217-2