Synology · Synology Mail Server · CVE-2025-2848
**Name of the Vulnerable Software and Affected Versions**
Synology Mail Server versions prior to DSM 7.2/7.1
**Description**
A vulnerability in Synology Mail Server allows authenticated users to tamper with system configurations, risking mail stability. The issue can be exploited by remote attackers, potentially compromising system configurations and service stability.
**Recommendations**
Upgrade to secure systems running DSM 7.2/7.1 to resolve the issue. As a temporary workaround, consider restricting access to configuration settings until a patch is available.