CVE-2017-15894
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 2.0%
exploitation probability
2.0%top 20% of all CVEs
observed exploitation
nono source reports it
Directory traversal vulnerability in the SYNO.FileStation.Extract in Synology DiskStation Manager (DSM) 6.0.x before 6.0.3-8754-3 and before 5.2-5967-6 allows remote authenticated users to write arbitrary files via the dest_folder_path parameter.
Affected products
Synology · Synology DiskStation Manager (DSM)