{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-11T01:04:23.893","vulnerabilities":[{"cve":{"id":"CVE-2024-50629","sourceIdentifier":"security@synology.com","published":"2025-03-19T06:15:15.460","lastModified":"2025-11-17T13:38:39.847","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"Improper encoding or escaping of output vulnerability in the webapi component in Synology BeeStation OS (BSM) before 1.1-65374 and Synology DiskStation Manager (DSM) before 7.1.1-42962-7, 7.2-64570-4, 7.2.1-69057-6 and 7.2.2-72806-1 allow remote attackers to read limited files via unspecified vectors."},{"lang":"es","value":"La vulnerabilidad de codificación o escape incorrecto de la salida en el componente webapi en Synology BeeStation Manager (BSM) anterior a 1.1-65374, Synology DiskStation Manager (DSM) anterior a 6.2.4-25556-8, 7.1.1-42962-7, 7.2-64570-4, 7.2.1-69057-6 y 7.2.2-72806-1 y Synology Unified Controller (DSMUC) anterior a 3.1.4-23079 permite a atacantes remotos leer archivos limitados a través de vectores no especificados."}],"metrics":{"cvssMetricV31":[{"source":"security@synology.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","baseScore":5.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":1.4}]},"weaknesses":[{"source":"security@synology.com","type":"Secondary","description":[{"lang":"en","value":"CWE-116"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:synology:beestation_os:1.0:-:*:*:*:*:*:*","matchCriteriaId":"F498216A-5ABD-4DCB-A149-F4D41D9022E5"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:beestation_os:1.0:65145:*:*:*:*:*:*","matchCriteriaId":"1006E9A9-86FB-4580-8278-8865B1646A00"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:beestation_os:1.0:65149:*:*:*:*:*:*","matchCriteriaId":"254081F3-13E2-40ED-A543-11DA03CEA508"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:beestation_os:1.0:65162:*:*:*:*:*:*","matchCriteriaId":"41B53AE7-424C-49F5-8F99-3FDA8FCC6D05"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:beestation_os:1.0.1:65210:*:*:*:*:*:*","matchCriteriaId":"DF7FFADA-CEB5-4869-9B38-8C58CE4FE673"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:beestation_os:1.0.2:65233:*:*:*:*:*:*","matchCriteriaId":"312D9B7F-DFE1-403E-B78B-5F79423F4E2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:beestation_os:1.0.2:65235:*:*:*:*:*:*","matchCriteriaId":"12C2383E-4C52-4A8B-8540-597E307C80BD"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:beestation_os:1.1:-:*:*:*:*:*:*","matchCriteriaId":"E6960C0C-01BF-437C-931A-6375ED673513"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:beestation_os:1.1:65373:*:*:*:*:*:*","matchCriteriaId":"327C73CB-CE4C-4909-95E4-0423E47B175D"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"7.1","versionEndExcluding":"7.1.1-42962-7","matchCriteriaId":"BC81EC7F-CE73-416B-BEE9-CDEAE535B548"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"7.2","versionEndExcluding":"7.2-64570-4","matchCriteriaId":"3A7DC498-96F4-4BD4-BC5F-A6F44D4240AB"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"7.2.1-69057","versionEndExcluding":"7.2.1-69057-6","matchCriteriaId":"265810D3-F94D-4023-B53C-F82E32B9A451"},{"vulnerable":true,"criteria":"cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"7.2.2","versionEndExcluding":"7.2.2-72806-1","matchCriteriaId":"B1205204-6FAC-4211-9AAA-1998A106AF9F"}]}]}],"references":[{"url":"https://www.synology.com/en-global/security/advisory/Synology_SA_24_20","source":"security@synology.com","tags":["Vendor Advisory"]},{"url":"https://www.synology.com/en-global/security/advisory/Synology_SA_24_23","source":"security@synology.com","tags":["Vendor Advisory"]}]}}]}