Beveiligingsadvies

CVE-2024-29241

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-03-28 06:28:53
Laatst bijgewerkt 2025-08-12 08:09:15
Toegewezen door synology
CVSS-score 9.9
Status PUBLISHED

Beschrijving

Missing authorization vulnerability in System webapi component in Synology Surveillance Station before 9.2.0-9289 and 9.2.0-11289 allows remote authenticated users to obtain non-sensitive information, write sensitive configurations in DSM, and reboot or shutdown NAS via unspecified vectors.