Vulnerabilities > Synology > Bc500 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-06-28 CVE-2024-39349 Classic Buffer Overflow vulnerability in Synology Bc500 Firmware and Tc500 Firmware
A vulnerability regarding buffer copy without checking size of input ('Classic Buffer Overflow') is found in the libjansson component and it does not affect the upstream library.
network
low complexity
synology CWE-120
critical
9.8
2023-10-25 CVE-2023-5746 Use of Externally-Controlled Format String vulnerability in Synology Bc500 Firmware and Tc500 Firmware
A vulnerability regarding use of externally-controlled format string is found in the cgi component.
network
low complexity
synology CWE-134
critical
9.8