PT-2020-4936 · Synology+1 · Synology Router Manager+1
Published
2020-10-29
·
Updated
2020-11-09
·
CVE-2020-27649
CVSS v3.1
9.0
Critical
| Vector | AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Synology Router Manager (SRM) versions prior to 1.2.4-8081
Description:
The issue is related to errors in the certificate authentication procedure of the OpenVPN client in Synology Router Manager (SRM). This can be exploited by a remote attacker to gain unauthorized access to the target device by sending specially crafted requests. The vulnerability allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Recommendations:
For versions prior to 1.2.4-8081, update to version 1.2.4-8081 or later to resolve the issue. As a temporary workaround, consider restricting access to the OpenVPN client until a patch is applied. Avoid using the OpenVPN client for sensitive information transmission until the issue is resolved.
Exploit
Fix
Improper Certificate Validation
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openvpn
Synology Router Manager