PT-2020-15862 · Synology · Music Station

Jan Hoff

·

Published

2020-12-10

·

Updated

2023-11-14

·

CVE-2020-2494

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Music Station versions prior to 5.3.12 Music Station versions prior to 5.3.13
Description This issue allows remote attackers to inject malicious code through a cross-site scripting vulnerability in Music Station.
Recommendations For Music Station versions prior to 5.3.12, update to version 5.3.12 or later. For Music Station versions prior to 5.3.13, update to version 5.3.13 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2020-2494

Affected Products

Music Station