CVE-2023-41741
2023-9-8 01:13:0 Author: claroty.com(查看原文) 阅读量:5 收藏

Medium Threat

An exposure of sensitive information to an unauthorized actor vulnerability in cgi component in Synology Router Manager (SRM) before 1.3.1-9346-6 allows remote attackers to obtain sensitive information via unspecified vectors.

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Synology RT6600ax routers. Authentication is not required to exploit this vulnerability.

The specific flaw exists within the info.cgi file. The issue results from the exposure of sensitive data to the WAN interface. An attacker can leverage this vulnerability to disclose certain information in the context of the current process.


文章来源: https://claroty.com/team82/disclosure-dashboard/cve-2023-41741
如有侵权请联系:admin#unsafe.sh