Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to spoof servers via an HTTP session.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-13362 | Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to spoof servers via an HTTP session. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 14 Jan 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: synology
Published:
Updated: 2024-09-17T00:46:03.051Z
Reserved: 2021-02-02T00:00:00
Link: CVE-2021-26564
No data.
Status : Modified
Published: 2021-02-26T22:15:20.300
Modified: 2025-01-14T19:29:55.853
Link: CVE-2021-26564
No data.
OpenCVE Enrichment
No data.
EUVD