Filtered by CWE-538
Total 62 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2017-5387 1 Mozilla 1 Firefox 2024-11-21 N/A
The existence of a specifically requested local file can be found due to the double firing of the "onerror" when the "source" attribute on a "<track>" tag refers to a file that does not exist if the source page is loaded locally. This vulnerability affects Firefox < 51.
CVE-2017-16770 1 Synology 1 Surveillance Station 2024-11-21 N/A
File and directory information exposure vulnerability in SYNO.SurveillanceStation.PersonalSettings.Photo in Synology Surveillance Station before 8.1.2-5469 allows remote authenticated users to obtain other user's sensitive files via the filename parameter.