PT-2024-4547 · Synology · Synology Router Manager

Bienpnn

+2

·

Published

2024-06-28

·

Updated

2025-08-07

·

CVE-2024-39348

CVSS v2.0

7.6

High

VectorAV:N/AC:H/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Synology Router Manager versions prior to 1.2.5-8227-11 Synology Router Manager versions prior to 1.3.1-9346-8
Description: The issue is related to the AirPrint functionality in Synology Router Manager, where code is loaded without integrity checks. This allows a remote attacker to execute arbitrary code, potentially via man-in-the-middle attacks.
Recommendations: For Synology Router Manager versions prior to 1.2.5-8227-11, update to version 1.2.5-8227-11 or later. For Synology Router Manager versions prior to 1.3.1-9346-8, update to version 1.3.1-9346-8 or later.

Fix

Weakness Enumeration

Related Identifiers

BDU:2024-05051
CVE-2024-39348

Affected Products

Synology Router Manager