← Back

CVE-2024-10445

nvd nist
Published: Mar 19, 2025Modified: Jun 17, 2026

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Exploitability: 3.9 / Impact: 1.4
Source: NVD

Description

Improper certificate validation vulnerability in the update functionality in Synology BeeStation OS (BSM) before 1.1-65374 and Synology DiskStation Manager (DSM) before 6.2.4-25556-8, 7.1.1-42962-7, 7.2-64570-4, 7.2.1-69057-6 and 7.2.2-72806-1 allow remote attackers to write limited files via unspecified vectors.

Affected (13)

2 products
Beestation Os
Diskstation Manager
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Synology
Version 1.0.1 65210
Version 1.0.2 65233
Version 1.0.2 65235
Version 1.0
Version 1.0 65145
Version 1.0 65149
Version 1.0 65162
Version 1.1
Version 1.1 65373
Synology
From 6.2 to 6.2.4-25556-8
From 7.2 to 7.2-64570-4
From 7.2.1-69057 to 7.2.1-69057-6
From 7.2.2 to 7.2.2-72806-1

References (2)

Timeline

No history available yet.