Get the latest tech news

Synology patches unannounced multiple zero-day vulnerabilities


Synology Product Security Advisory

The vulnerability reported in ZDI-CAN-25403 allows remote attackers to execute arbitrary code. The vulnerability reported in ZDI-CAN-25613 allows remote attackers to read specific files. The vulnerability reported in ZDI-CAN-25617 allows adjacent man-in-the-middle attacker to write specific files.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Synology

Synology

Photo of day vulnerabilities

day vulnerabilities

Related news:

News photo

Synology hurries out patches for zero-days exploited at Pwn2Own

News photo

Security researchers found a serious zero-click bug in Synology's Photos app

News photo

QNAP, Synology, Lexmark devices hacked on Pwn2Own Day 3