{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-19T18:14:16.955","vulnerabilities":[{"cve":{"id":"CVE-2024-10444","sourceIdentifier":"security@synology.com","published":"2025-03-19T02:15:28.297","lastModified":"2025-11-17T13:43:14.007","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"Improper certificate validation vulnerability in the LDAP utilities in Synology DiskStation Manager (DSM) before 7.1.1-42962-8, 7.2.1-69057-7 and 7.2.2-72806-3 allows man-in-the-middle attackers to hijack the authentication of administrators via unspecified vectors."},{"lang":"es","value":"Una vulnerabilidad de validación de certificado incorrecta en las utilidades LDAP en Synology DiskStation Manager (DSM) anteriores a 7.1.1-42962-8, 7.2.1-69057-7 y 7.2.2-72806-3 permite a atacantes intermediarios secuestrar la autenticación de los administradores a través de vectores no especificados."}],"metrics":{"cvssMetricV31":[{"source":"security@synology.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.6,"impactScore":5.9}]},"weaknesses":[{"source":"security@synology.com","type":"Secondary","description":[{"lang":"en","value":"CWE-295"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"7.1","versionEndExcluding":"7.1.1-42962-8","matchCriteriaId":"299B3A47-D265-4DDC-86C5-F2169C46A6DD"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"7.2.1-69057","versionEndExcluding":"7.2.1-69057-7","matchCriteriaId":"8F12B265-8B22-4F52-92D9-910B4FDF85DE"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"7.2.2","versionEndExcluding":"7.2.2-72806-3","matchCriteriaId":"9C2F434A-56E9-4D31-85D1-B2AB60605908"}]}]}],"references":[{"url":"https://www.synology.com/en-global/security/advisory/Synology_SA_25_01","source":"security@synology.com","tags":["Vendor Advisory"]}]}}]}