All 41 CVE vulnerabilities found in Synology Router Manager (SRM), with AI-generated Chinese analysis, references, and POCs.
This page documents known vulnerability aggregations for the Synology Router Manager (SRM) product within the network infrastructure weakness category. It serves as a centralized reference point for security researchers, system administrators, and IT professionals seeking to understand the security posture of Synology’s router management software. The content collected here encompasses a wide spectrum of software flaws identified within the SRM environment, ranging from cross-site scripting and insecure direct object references to privilege escalation and authentication bypass issues. This compilation covers vulnerability disclosures from early releases through the most recent firmware versions, ensuring a comprehensive historical perspective. By aggregating data from various security advisories, bug bounty programs, and public threat intelligence feeds, this resource provides a holistic view of the attack surface associated with SRM deployments. Visitors to this page can effectively track vendor advisories issued by Synology to address specific security flaws in their router manager software. Users can also gain a deeper understanding of particular weakness classes, such as injection or path traversal, as they manifest in this specific product context. Furthermore, one can look up a product's vulnerability history to identify patterns in software stability, assess the effectiveness of past patches, and make informed decisions regarding system updates and security hardening strategies. This structured approach facilitates better risk management and supports proactive security maintenance for networks relying on Synology hardware.
Vendor: Synology
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2020-27651 | Synology Router Manager 安全漏洞 CWE-614 | 5.8 | Medium | 2020-10-29 |
| CVE-2020-27649 | Synology Router Manager 信任管理问题漏洞 CWE-295 | 8.3 | High | 2020-10-29 |
| CVE-2019-11823 | Synology Router Manager 缓冲区错误漏洞 CWE-125 | 8.6 | High | 2020-05-04 |
| CVE-2018-13292 | Synology Router Manager 信息泄露漏洞 CWE-200 | 4.3 | - | 2019-04-01 |
| CVE-2018-13290 | Synology Router Manager 信息泄露漏洞 CWE-200 | 6.5 | - | 2019-04-01 |
| CVE-2018-13289 | Synology Router Manager 信息泄露漏洞 CWE-200 | 7.5 | - | 2019-04-01 |
| CVE-2018-13287 | Synology Router Manager 权限许可和访问控制问题漏洞 CWE-276 | 6.5 | - | 2019-04-01 |
| CVE-2018-13285 | Synology Router Manager 操作系统命令注入漏洞 CWE-78 | 8.8 | - | 2019-04-01 |
| CVE-2018-8918 | Synology Router Manager 跨站脚本漏洞 CWE-79 | 5.4 | - | 2018-12-24 |
| CVE-2017-12078 | Synology Router Manager EZ-Internet 命令注入漏洞 CWE-77 | 8.8 | - | 2018-06-08 |
| CVE-2017-15895 | Synology Router Manager 路径遍历漏洞 CWE-22 | 6.5 | - | 2017-12-08 |
All 41 known CVE vulnerabilities affecting Synology Router Manager (SRM) with full Chinese analysis, references, and POCs where available.