Information exposure vulnerability in SYNO.Personal.Profile in Synology Application Service before 1.5.4-0320 allows remote authenticated users to obtain sensitive system information via the uid parameter.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-5242 Information exposure vulnerability in SYNO.Personal.Profile in Synology Application Service before 1.5.4-0320 allows remote authenticated users to obtain sensitive system information via the uid parameter.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: synology

Published:

Updated: 2024-09-16T17:47:42.193Z

Reserved: 2018-07-05T00:00:00

Link: CVE-2018-13294

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-04-01T15:29:00.717

Modified: 2024-11-21T03:46:46.660

Link: CVE-2018-13294

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.