Download of code without integrity check vulnerability in AirPrint functionality in Synology Router Manager (SRM) before 1.2.5-8227-11 and 1.3.1-9346-8 allows man-in-the-middle attackers to execute arbitrary code via unspecified vectors.
References
Link | Resource |
---|---|
https://www.synology.com/en-global/security/advisory/Synology_SA_23_16 | Vendor Advisory |
https://www.synology.com/en-global/security/advisory/Synology_SA_23_16 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
07 Aug 2025, 13:47
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:synology:router_manager:1.2.5-8227:update5:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.3.1-9346:update5:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.2.5-8227:-:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.3.1-9346:update2:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.2.5-8227:update1:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.2.5-8227:update4:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.3.1-9346:update3:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.2.5-8227:update2:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.3.1-9346:update7:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.2.5-8227:update9:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.3.1-9346:update6:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.2.5-8227:update3:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.3.1-9346:update1:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.3.1-9346:update4:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.2.5-8227:update6:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.2.5-8227:update10:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:*:*:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.2.5-8227:update7:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.2.5-8227:update8:*:*:*:*:*:* cpe:2.3:o:synology:router_manager:1.3.1-9346:-:*:*:*:*:*:* |
|
First Time |
Synology router Manager
Synology |
|
References | () https://www.synology.com/en-global/security/advisory/Synology_SA_23_16 - Vendor Advisory |
21 Nov 2024, 09:27
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.synology.com/en-global/security/advisory/Synology_SA_23_16 - | |
Summary |
|
28 Jun 2024, 10:27
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-28 07:15
Updated : 2025-08-07 13:47
NVD link : CVE-2024-39348
Mitre link : CVE-2024-39348
CVE.ORG link : CVE-2024-39348
JSON object : View
Products Affected
synology
- router_manager
CWE
CWE-494
Download of Code Without Integrity Check