CVE-2024-50629
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Mar 19, 2025
Updated: Mar 27, 2025
CWE ID 116
Summary
CVE-2024-50629 is a vulnerability affecting Synology's BeeStation OS (BSM) before 1.1-65374 and Synology DiskStation Manager (DSM) before 7.1.1-42962-7, 7.2-64570-4, 7.2.1-69057-6, and 7.2.2-72806-1. This issue stems from an improper encoding or escaping of output in the webapi component. Attackers can exploit this vulnerability remotely to read limited files using unspecified vectors. Successful exploitation could result in unauthorized access to sensitive information. Users are advised to update their systems to the latest versions to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.