cbcvebase.

Synology Diskstation Manager vulnerabilities

116 known vulnerabilities affecting synology/diskstation_manager.

Total CVEs
116
CISA KEV
1
actively exploited
Public exploits
11
Exploited in wild
4
Severity breakdown
CRITICAL21HIGH51MEDIUM39LOW5

Vulnerabilities

Page 4 of 6
CVE-2018-7185P3HIGHCVSS 7.5≥ 5.2, < 6.1.6-152662018-03-06
CVE-2018-7185 [HIGH] CVE-2018-7185: The protocol engine in ntp 4.2.6 before 4.2.8p11 allows a remote attackers to cause a denial of serv The protocol engine in ntp 4.2.6 before 4.2.8p11 allows a remote attackers to cause a denial of service (disruption) by continually sending a packet with a zero-origin timestamp and source IP address of the "other side" of an interleaved association causing the victim ntpd to reset its association.
nvd
CVE-2018-7184P3HIGHCVSS 7.5v5.2v6.0+1 more2018-03-06
CVE-2018-7184 [HIGH] CVE-2018-7184: ntpd in ntp 4.2.8p4 before 4.2.8p11 drops bad packets before updating the "received" timestamp, whic ntpd in ntp 4.2.8p4 before 4.2.8p11 drops bad packets before updating the "received" timestamp, which allows remote attackers to cause a denial of service (disruption) by sending a packet with a zero-origin timestamp causing the association to reset and setting the contents of the packet as the most recent timestamp. This issue is a result of an incomplete fix
nvd
CVE-2014-2264P3HIGHCVSS 7.8v4.3-38102014-03-02
CVE-2014-2264 [HIGH] CWE-200 CVE-2014-2264: The OpenVPN module in Synology DiskStation Manager (DSM) 4.3-3810 update 1 has a hardcoded root pass The OpenVPN module in Synology DiskStation Manager (DSM) 4.3-3810 update 1 has a hardcoded root password of synopass, which makes it easier for remote attackers to obtain access via a VPN session.
nvd
CVE-2023-2729P3HIGHCVSS 7.5≥ 6.2, < 7.2-64561≥ 7.2, < 7.2-64561+3 more2023-06-13
CVE-2023-2729 [HIGH] CVE-2023-2729: Use of insufficiently random values vulnerability in User Management Functionality in Synology DiskS Use of insufficiently random values vulnerability in User Management Functionality in Synology DiskStation Manager (DSM) before 7.2-64561 allows remote attackers to obtain user credential via unspecified vectors.
nvd
CVE-2021-26564P3HIGHCVSS 8.7fixed in 6.2.3-25426-32021-02-26
CVE-2021-26564 [HIGH] CWE-319 CVE-2021-26564: Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to spoof servers via an HTTP session.
nvd
CVE-2021-29086P3HIGHCVSS 7.5≥ 6.2, < 6.2.3-25426-3≥ unspecified, < 6.2.3-25426-32021-06-23
CVE-2021-29086 [HIGH] CWE-200 CVE-2021-29086: Exposure of sensitive information to an unauthorized actor vulnerability in webapi component in Syno Exposure of sensitive information to an unauthorized actor vulnerability in webapi component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to obtain sensitive information via unspecified vectors.
nvd
CVE-2021-26567P3HIGHCVSS 7.8fixed in 6.2.3-25426-32021-02-26
CVE-2021-26567 [HIGH] CWE-121 CVE-2021-26567: Stack-based buffer overflow vulnerability in frontend/main.c in faad2 before 2.2.7.1 allow local att Stack-based buffer overflow vulnerability in frontend/main.c in faad2 before 2.2.7.1 allow local attackers to execute arbitrary code via filename and pathname options.
nvd
CVE-2022-22680P3HIGHCVSS 7.5≥ 6.2, < 6.2.4-25556-3≥ 7.0, < 7.0.1-42218-2+1 more2022-02-07
CVE-2022-22680 [HIGH] CWE-200 CVE-2022-22680: Exposure of sensitive information to an unauthorized actor vulnerability in Web Server in Synology D Exposure of sensitive information to an unauthorized actor vulnerability in Web Server in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote attackers to obtain sensitive information via unspecified vectors.
nvd
CVE-2022-3576P3HIGHCVSS 7.5fixed in 7.1.1-42962-2≥ unspecified, < 7.1.1-42962-22022-10-20
CVE-2022-3576 [HIGH] CWE-125 CVE-2022-3576: A vulnerability regarding out-of-bounds read is found in the session processing functionality of Out A vulnerability regarding out-of-bounds read is found in the session processing functionality of Out-of-Band (OOB) Management. This allows remote attackers to obtain sensitive information via unspecified vectors. The following models with Synology DiskStation Manager (DSM) versions before 7.1.1-42962-2 may be affected: DS3622xs+, FS3410, and HD6500.
nvd
CVE-2020-27648P3CRITICALCVSS 9.0≥ 6.2, < 6.2.3-25426-2≥ unspecified, < 6.2.3-25426-22020-10-29
CVE-2020-27648 [CRITICAL] CWE-295 CVE-2020-27648: Improper certificate validation vulnerability in OpenVPN client in Synology DiskStation Manager (DSM Improper certificate validation vulnerability in OpenVPN client in Synology DiskStation Manager (DSM) before 6.2.3-25426-2 allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
nvd
CVE-2021-29088P3HIGHCVSS 7.8fixed in 6.2.4-255532021-06-01
CVE-2021-29088 [HIGH] CWE-22 CVE-2021-29088: Improper limitation of a pathname to a restricted directory ('Path Traversal') in cgi component in S Improper limitation of a pathname to a restricted directory ('Path Traversal') in cgi component in Synology DiskStation Manager (DSM) before 6.2.4-25553 allows local users to execute arbitrary code via unspecified vectors.
nvd
CVE-2024-45539P3HIGHCVSS 7.5≥ 7.2.1-69057, < 7.2.1-69057-2≥ 7.2.2-72803, < 7.2.2-72806+2 more2025-12-04
CVE-2024-45539 [HIGH] CWE-787 CVE-2024-45539: Out-of-bounds write vulnerability in cgi components in Synology DiskStation Manager (DSM) before 7.2 Out-of-bounds write vulnerability in cgi components in Synology DiskStation Manager (DSM) before 7.2.1-69057-2 and 7.2.2-72806 and Synology Unified Controller (DSMUC) before 3.1.4-23079 allows remote attackers to conduct denial-of-service attacks via unspecified vectors.
nvd
CVE-2024-10444P3HIGHCVSS 7.5≥ 7.1, < 7.1.1-42962-8≥ 7.2.1-69057, < 7.2.1-69057-7+2 more2025-03-19
CVE-2024-10444 [HIGH] CWE-295 CVE-2024-10444: Improper certificate validation vulnerability in the LDAP utilities in Synology DiskStation Manager Improper certificate validation vulnerability in the LDAP utilities in Synology DiskStation Manager (DSM) before 7.1.1-42962-8, 7.2.1-69057-7 and 7.2.2-72806-3 allows man-in-the-middle attackers to hijack the authentication of administrators via unspecified vectors.
nvd
CVE-2017-15894P3MEDIUMCVSS 6.5≥ 5.2, < 5.2-5967-6≥ 6.0, < 6.0.3-8754-32017-12-08
CVE-2017-15894 [MEDIUM] CWE-22 CVE-2017-15894: Directory traversal vulnerability in the SYNO.FileStation.Extract in Synology DiskStation Manager (D Directory traversal vulnerability in the SYNO.FileStation.Extract in Synology DiskStation Manager (DSM) 6.0.x before 6.0.3-8754-3 and before 5.2-5967-6 allows remote authenticated users to write arbitrary files via the dest_folder_path parameter.
nvd
CVE-2026-40535P3MEDIUMCVSS 6.5≥ 7.3, < 7.3.2-86009-2≥ 7.2.2, < 7.2.2-72806-7+1 more2026-09-18
CVE-2026-40535 [MEDIUM] CWE-22 CVE-2026-40535: An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in D An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Desktop API in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, 7.2.2-72806-7 and 7.3.2-86009-2 allows remote attackers to write limited files and conduct limited denial-of-service attacks.
nvd
CVE-2026-40532P3MEDIUMCVSS 6.5≥ 7.3, < 7.3.2-86009-2≥ 7.2.2, < 7.2.2-72806-7+1 more2026-09-18
CVE-2026-40532 [MEDIUM] CWE-425 CVE-2026-40532: A direct request ('forced browsing') vulnerability in Wallpaper Path in Synology DiskStation Manager A direct request ('forced browsing') vulnerability in Wallpaper Path in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, 7.2.2-72806-7 and 7.3.2-86009-2 allows remote authenticated users to obtain sensitive information.
nvd
CVE-2021-26560P3HIGHCVSS 7.4fixed in 6.2.3-25426-32021-02-26
CVE-2021-26560 [HIGH] CWE-319 CVE-2021-26560: Cleartext transmission of sensitive information vulnerability in synoagentregisterd in Synology Disk Cleartext transmission of sensitive information vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to spoof servers via an HTTP session.
nvd
CVE-2019-14907P3MEDIUMCVSS 6.5v6.22020-01-21
CVE-2019-14907 [MEDIUM] CWE-125 CVE-2019-14907: All samba versions 4.9.x before 4.9.18, 4.10.x before 4.10.12 and 4.11.x before 4.11.5 have an issue All samba versions 4.9.x before 4.9.18, 4.10.x before 4.10.12 and 4.11.x before 4.11.5 have an issue where if it is set with "log level = 3" (or above) then the string obtained from the client, after a failed character conversion, is printed. Such strings can be provided during the NTLMSSP authentication exchange. In the Samba AD DC in particular, t
nvd
CVE-2018-8920P3HIGHCVSS 7.2fixed in 6.1.6-15266≥ unspecified, < 6.1.6-152662018-12-24
CVE-2018-8920 [HIGH] CWE-116 CVE-2018-8920: Improper neutralization of escape vulnerability in Log Exporter in Synology DiskStation Manager (DSM Improper neutralization of escape vulnerability in Log Exporter in Synology DiskStation Manager (DSM) before 6.1.6-15266 allows remote attackers to inject arbitrary content to have an unspecified impact by exporting an archive in CSV format.
nvd
CVE-2019-19344P3MEDIUMCVSS 6.5v6.22020-01-21
CVE-2019-19344 [MEDIUM] CWE-416 CVE-2019-19344: There is a use-after-free issue in all samba 4.9.x versions before 4.9.18, all samba 4.10.x versions There is a use-after-free issue in all samba 4.9.x versions before 4.9.18, all samba 4.10.x versions before 4.10.12 and all samba 4.11.x versions before 4.11.5, essentially due to a call to realloc() while other local variables still point at the original buffer.
nvd
Synology Diskstation Manager vulnerabilities | cvebase