Known Vulnerabilities for Diskstation Manager by Synology
Listed below are 10 of the newest known vulnerabilities associated with "Diskstation Manager" by "Synology".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2024-0854 json | 5.4 - MEDIUM | 2024-01-24 | 2024-01-30 | |
| CVE-2023-2729 json | Use of insufficiently random values vulnerability in User Management Functionality in Synology DiskStation Manager (DSM) befo... | 7.5 - HIGH | 2023-06-13 | 2023-11-07 |
| CVE-2023-0142 json | Uncontrolled search path element vulnerability in Backup Management Functionality in Synology DiskStation Manager (DSM) befor... | 8.1 - HIGH | 2023-06-13 | 2023-11-07 |
| CVE-2022-27626 json | A vulnerability regarding concurrent execution using shared resource with improper synchronization ('Race Condition') is foun... | 8.1 - HIGH | 2022-10-20 | 2022-10-21 |
| CVE-2022-27625 json | A vulnerability regarding improper restriction of operations within the bounds of a memory buffer is found in the message pro... | 9.8 - CRITICAL | 2022-10-20 | 2022-10-21 |
| CVE-2022-27624 json | A vulnerability regarding improper restriction of operations within the bounds of a memory buffer is found in the packet decr... | 9.8 - CRITICAL | 2022-10-20 | 2022-10-21 |
| CVE-2022-27623 json | Missing authentication for critical function vulnerability in iSCSI management functionality in Synology DiskStation Manager ... | 9.1 - CRITICAL | 2022-10-25 | 2022-10-26 |
| CVE-2022-27622 json | Server-Side Request Forgery (SSRF) vulnerability in Package Center functionality in Synology DiskStation Manager (DSM) before... | 4.3 - MEDIUM | 2022-10-25 | 2022-10-26 |
| CVE-2022-27621 json | Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Synology ... | 3.8 - LOW | 2022-08-03 | 2022-08-09 |
| CVE-2022-27620 json | Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Synology ... | 4.9 - MEDIUM | 2022-08-03 | 2022-08-09 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Synology | Diskstation Manager | 6.2.2-24922 | |||
| Application | Synology | Diskstation Manager | 6.2.1-23824-6 | |||
| Application | Synology | Diskstation Manager | 6.2.1-23824-5 | |||
| Application | Synology | Diskstation Manager | 6.2.1-23824-4 | |||
| Application | Synology | Diskstation Manager | 6.2.1-23824-3 | |||
| Application | Synology | Diskstation Manager | 6.2.1-23824-2 | |||
| Application | Synology | Diskstation Manager | 6.2.1-23824-1 | |||
| Application | Synology | Diskstation Manager | 6.2.1-23824 | |||
| Application | Synology | Diskstation Manager | 6.2.1 | |||
| Application | Synology | Diskstation Manager | 6.2-23739-2 | |||
| Application | Synology | Diskstation Manager | 6.2-23739-1 | |||
| Application | Synology | Diskstation Manager | 6.2-23739 | |||
| Application | Synology | Diskstation Manager | 6.2 | |||
| Application | Synology | Diskstation Manager | 6.1.7-15284-3 | |||
| Application | Synology | Diskstation Manager | 6.1.7-15284-2 | |||
| Application | Synology | Diskstation Manager | 6.1.7-15284-1 | |||
| Application | Synology | Diskstation Manager | 6.1.7-15284 | |||
| Application | Synology | Diskstation Manager | 6.1.6-15266 | |||
| Application | Synology | Diskstation Manager | 6.1.4-15217-5 | |||
| Application | Synology | Diskstation Manager | 6.1.4-15217-4 |