Hacking News New Admin Takeover Vulnerability Exposed in Synology's DiskStation Manager - Printable Version

+- (https://hackmyride.com/forum)
+-- Forum: Automotive Hacking (https://hackmyride.com/forum/forumdisplay.php?fid=211)
+--- Forum: News (https://hackmyride.com/forum/forumdisplay.php?fid=278)
+---- Forum: The Hacker News (https://hackmyride.com/forum/forumdisplay.php?fid=279)
+---- Thread: Hacking News New Admin Takeover Vulnerability Exposed in Synology's DiskStation Manager (/showthread.php?tid=9193)



New Admin Takeover Vulnerability Exposed in Synology's DiskStation Manager - The Hacker News - 10-18-2023

New Admin Takeover Vulnerability Exposed in Synology's DiskStation Manager

A medium-severity flaw has been discovered in Synology's DiskStation Manager (DSM) that could be exploited to decipher an administrator's password and remotely hijack the account.
"Under some rare conditions, an attacker could leak enough information to restore the seed of the pseudorandom number generator (PRNG), reconstruct the admin password, and remotely take over the admin account,"

https://thehackernews.com/2023/10/new-admin-takeover-vulnerability.html