CVE-2024-11398 Information
Dec 05, 2024
cve
Description
Improper limitation of a pathname to a restricted directory (‘Path Traversal’) vulnerability in OTP reset functionality in Synology Router Manager (SRM) before 1.3.1-9346-9 allows remote authenticated users to delete arbitrary files via unspecified vectors.
Reference
https://www.synology.com/en-global/security/advisory/Synology_SA_24_03
Share on: