PT-2026-31906 · Synology · Synology Ssl Vpn Client
Laurent Sibilla
·
Published
2026-04-10
·
Updated
2026-04-20
·
CVE-2021-47961
CVSS v2.0
9.4
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:N |
Name of the Vulnerable Software and Affected Versions
Synology SSL VPN Client versions prior to 1.4.5-0684
Description
A security issue exists in Synology SSL VPN Client that allows remote attackers to access or influence a user's PIN code due to insecure storage. This could lead to unauthorized VPN configuration and potential interception of VPN traffic if a user interacts with the system.
Recommendations
Update to version 1.4.5-0684 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Synology Ssl Vpn Client