VYPR
High severity7.5NVD Advisory· Published Dec 18, 2024· Updated Jun 17, 2026

CVE-2024-4464

CVE-2024-4464

Description

Authorization bypass through user-controlled key vulnerability in streaming service in Synology Media Server before 1.4-2680, 2.0.5-3152 and 2.2.0-3325 allows remote attackers to read specific files via unspecified vectors.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:synology:media_server:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:synology:media_server:*:*:*:*:*:*:*:*range: <1.4-2680
    • (no CPE)range: *
  • Range: <1.4-2680, <2.0.5-3152, <2.2.0-3325

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.