Vulnerabilities > Synology > Low

DATE CVE VULNERABILITY TITLE RISK
2017-06-13 CVE-2017-9552 Improper Authentication vulnerability in Synology Photo Station
A design flaw in authentication in Synology Photo Station 6.0-2528 through 6.7.1-3419 allows local users to obtain credentials via cmdline.
local
low complexity
synology CWE-287
2.1
2010-09-29 CVE-2010-3684 Credentials Management vulnerability in Synology DSM
The FTP authentication module in Synology Disk Station 2.x logs passwords to the web application interface in cases of incorrect login attempts, which allows local users to obtain sensitive information by reading a log, a different vulnerability than CVE-2010-2453.
local
low complexity
synology CWE-255
2.1