First published: Mon Apr 01 2019(Updated: )
Incorrect default permissions vulnerability in synouser.conf in Synology Diskstation Manager (DSM) before 6.2-23739-1 allows remote authenticated users to obtain sensitive information via the world readable configuration.
Credit: security@synology.com
Affected Software | Affected Version | How to fix |
---|---|---|
Synology DiskStation Manager | >=5.2<5.2-5967-8 | |
Synology DiskStation Manager | >=6.0<6.0.3-8754-8 | |
Synology DiskStation Manager | >=6.1<6.1.7-15284-1 | |
Synology DiskStation Manager | >=6.2<6.2-23739-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.