Unrated severityNVD Advisory· Published Dec 9, 2024· Updated Aug 1, 2025
CVE-2024-53281
CVE-2024-53281
Description
Improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability in Network WOL functionality in Synology Router Manager (SRM) before 1.3.1-9346-10 allows remote authenticated users to read or write specific files containing non-sensitive information and conduct limited denial-of-service attacks by injecting arbitrary web script or HTML.
Affected products
2- Range: <1.3.1-9346-10
- Range: 1.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.synology.com/en-global/security/advisory/Synology_SA_24_09mitrevendor-advisory
News mentions
0No linked articles in our index yet.