Synology.BSM.DSM.RedirectURI.Information.Disclosure
Description
This indicates an attack attempt to exploit an Information Disclosure Vulnerability in Synology BeeStation OS (BSM) and DiskStation Manager (DSM).
The vulnerability is due to an error when the vulnerable software handles a maliciously crafted request. A remote attacker can exploit this to gain unauthorized access to sensitive information.
Affected Products
Synology BeeStation OS (BSM) before 1.1-65374
Synology DiskStation Manager (DSM) before 7.1.1-42962-7, 7.2-64570-4, 7.2.1-69057-6 and 7.2.2-72806-1
Impact
Information Disclosure: attackers can gain sensitive information from vulnerable systems.
Recommended Actions
Apply the most recent upgrade or patch from the vendor.
https://www.synology.com/en-global/security/advisory/Synology_SA_24_20
Coverage
| IPS (Regular DB) | |
| IPS (Extended DB) |