PT-2020-4936 · Synology+1 · Synology Router Manager+1

Published

2020-10-29

·

Updated

2020-11-09

·

CVE-2020-27649

CVSS v3.1

9.0

Critical

VectorAV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Synology Router Manager (SRM) versions prior to 1.2.4-8081
Description: The issue is related to errors in the certificate authentication procedure of the OpenVPN client in Synology Router Manager (SRM). This can be exploited by a remote attacker to gain unauthorized access to the target device by sending specially crafted requests. The vulnerability allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Recommendations: For versions prior to 1.2.4-8081, update to version 1.2.4-8081 or later to resolve the issue. As a temporary workaround, consider restricting access to the OpenVPN client until a patch is applied. Avoid using the OpenVPN client for sensitive information transmission until the issue is resolved.

Exploit

Fix

Improper Certificate Validation

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-05511
CVE-2020-27649

Affected Products

Openvpn
Synology Router Manager