CVE-2023-41741Sensitive Information Exposure in Synology Router Manager

Severity
7.5HIGHNVD
CNA5.3
EPSS
0.3%
top 44.43%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 31

Description

Exposure of sensitive information to an unauthorized actor vulnerability in cgi component in Synology Router Manager (SRM) before 1.3.1-9346-6 allows remote attackers to obtain sensitive information via unspecified vectors.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

NVDsynology/router_manager< 1.3.1-9346-6
CVEListV5synology/synology_router_manager1.31.3.1-9346-6

Patches

🔴Vulnerability Details

2
CVEList
CVE-2023-41741: Exposure of sensitive information to an unauthorized actor vulnerability in cgi component in Synology Router Manager (SRM) before 12023-08-31
GHSA
GHSA-5m7w-3v9x-xj3w: Exposure of sensitive information to an unauthorized actor vulnerability in cgi component in Synology Router Manager (SRM) before 12023-08-31
CVE-2023-41741 — Sensitive Information Exposure | cvebase