CVE-2021-26560
26.02.2021, 22:15
Cleartext transmission of sensitive information vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to spoof servers via an HTTP session.Enginsight
Vendor | Product | Version |
---|---|---|
synology | diskstation_manager | 𝑥 < 6.2.3-25426-3 |
synology | vs960hd_firmware | - |
synology | skynas_firmware | - |
synology | diskstation_manager_unified_controller | 3.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration