CVE-2024-39347
28.06.2024, 07:15
Incorrect default permissions vulnerability in firewall functionality in Synology Router Manager (SRM) before 1.2.5-8227-11 and 1.3.1-9346-8 allows man-in-the-middle attackers to access highly sensitive intranet resources via unspecified vectors.Enginsight
Vendor | Product | Version |
---|---|---|
synology | router_manager | 1.2 ≤ 𝑥 < 1.2.5-8227 |
synology | router_manager | 1.3 ≤ 𝑥 < 1.3.1-9346 |
synology | router_manager | 1.2.5-8227 |
synology | router_manager | 1.2.5-8227:update1 |
synology | router_manager | 1.2.5-8227:update10 |
synology | router_manager | 1.2.5-8227:update2 |
synology | router_manager | 1.2.5-8227:update3 |
synology | router_manager | 1.2.5-8227:update4 |
synology | router_manager | 1.2.5-8227:update5 |
synology | router_manager | 1.2.5-8227:update6 |
synology | router_manager | 1.2.5-8227:update7 |
synology | router_manager | 1.2.5-8227:update8 |
synology | router_manager | 1.2.5-8227:update9 |
synology | router_manager | 1.3.1-9346 |
synology | router_manager | 1.3.1-9346:update1 |
synology | router_manager | 1.3.1-9346:update2 |
synology | router_manager | 1.3.1-9346:update3 |
synology | router_manager | 1.3.1-9346:update4 |
synology | router_manager | 1.3.1-9346:update5 |
synology | router_manager | 1.3.1-9346:update6 |
synology | router_manager | 1.3.1-9346:update7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration