Security Advisory

CVE-2022-27620

6.8
MEDIUM

Vulnerability Description

Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Synology SSO Server before 2.2.3-0331 allows remote authenticated users to read arbitrary files via unspecified vectors.
Published Date August 3, 2022
Official Source NIST NVD Advisory