CVE-2023-52951: Medium severity Synology Note Station Client vulnerability
Published Jun 3, 2026
·Updated
A cleartext transmission of sensitive information vulnerability in Synology Note Station Client before 2.2.4-703 allows man-in-the-middle attackers to obtain user credential.
Affected Software
2 affected components
Synology Note Station Client<2.2.4-703
Synology Note Station Client<2.2.4-703
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Synology Note Station Clientto a version that resolves this vulnerability.Fixed in 2.2.4-703
Event History
Jun 3, 2026
CVE Published
via MITRE·01:11 PM
Data Sourced
via MITRE·01:11 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-52951?
CVE-2023-52951 has a medium severity rating of 5.9.
2
How do I fix CVE-2023-52951?
To fix CVE-2023-52951, upgrade the Synology Note Station Client to version 2.2.4-703 or later.
3
What type of vulnerability is CVE-2023-52951?
CVE-2023-52951 is a cleartext transmission of sensitive information vulnerability.
4
What impact does CVE-2023-52951 have on users?
CVE-2023-52951 allows man-in-the-middle attackers to obtain user credentials.
5
Which software is affected by CVE-2023-52951?
CVE-2023-52951 affects the Synology Note Station Client prior to version 2.2.4-703.