[Nulled] » Information security » Synology has eliminated a critical vulnerability in VPN routers
January 15 2023

Synology has eliminated a critical vulnerability in VPN routers

web3 15-01-2023, 12:25 Information security 130

Synology has eliminated a critical vulnerability in VPN routers

The Taiwanese manufacturer eliminated the vulnerability, which scored 10 points out of 10 possible on the CVSS vulnerability assessment scale. The problem affected routers configured to work as VPN servers using Synology VPN Plus Server.

The vulnerability received the identifier CVE-2022-43931 and is described as an out-of-bounds entry error related to remote desktop functions in Synology VPN Plus Server.

The manufacturer said that the successful operation of the bug, discovered by the company's own security team, "allows remote attackers to execute arbitrary commands through arbitrary vectors." At the same time, it is known that exploiting the vulnerability does not require privileges on target routers or any interaction with the user.

As a result, users of VPN Plus Server for Synology Router Manager (SRM) 1.2 and VPN Plus Server for SRM 1.3 are recommended to upgrade to versions 1.4.3-0534 and 1.4.4-0635 as soon as possible.

Information

Visitors who are in the group Guests they can't download files.
Log in to the site under your login and password or if you are a new user go through the process registrations on the website.

Comments:

This publication has no comments yet. You can be the first!

Information the publication:

  • Author of the publication: web3
  • Date of publication: 15 January 2023 12:25
  • Publication category(s): Information security
  • Number of views of the publication: 130
  • Number of comments to the publication: 0

Related News

13 March 2022
Information security
From Prototype Pollution

From Prototype Pollution to RCE on ZeroNight X As part of this article, we will look at the vulnerability of

Read more
12 November 2022
Magento script / Modules Magento
Synology NAS and Magento

Hello everyone There is a home server based on Synology NAS 920+. There is an idea to deploy a full-fledged web

Read more
21 November 2022
XenForo forum platform / XenForo Releases
XenForo 2.0.11 (Security

XenForo 2.0.11 is now available for download. This release was released to address a potential vulnerability. We

Read more
21 November 2022
XenForo forum platform / XenForo Releases
XenForo 2.0.9

XenForo 2.0.9 is now available for download, which aims to solve a security problem due to a potential

Read more
21 November 2022
XenForo forum platform / XenForo Releases
XenForo 2.0.8

XenForo 2.0.8 is now available for download, which aims to solve a security problem due to a potential

Read more

Information

Users of visitor are not allowed to comment this publication.

Site Search

Site Menu


☑ Scripts Software

Calendar

«    May 2024    »
MonTueWedThuFriSatSun
 12345
6789101112
13141516171819
20212223242526
2728293031 

Advertisement

Survey on the website

Evaluate the work of the site
 

Statistics

  • +6 Total articles 5578
  • +19 Comments 3155
  • +37 Users : 4141