Tag: NAS Devices

Synology Urges Patch for Critical Zero-Click RCE Flaw Affecting Millions of NAS Devices
News

Synology Urges Patch for Critical Zero-Click RCE Flaw Affecting Millions of NAS Devices

A serious security vulnerability affecting DiskStation and BeePhotos that might result in remote code execution has been fixed by Taiwanese network-attached storage (NAS) appliance manufacturer Synology. The zero-day vulnerability, known as RISK:STATION by Midnight Blue and tracked as CVE-2024-10443, was showcased by security researcher Rick de Jager during the Pwn2Own Ireland 2024 hacking competition. According to the Dutch business, RISK:STATION is an unauthenticated zero-click vulnerability that gives hackers access to root-level code execution on millions of Synology DiskStation and BeeStation NAS systems read more about Synology Urges Patch for Critical Zero-Click RCE Flaw Affecting Millions of NAS Devices. Get up to date on the latest cybersecurity news and enhanc...
Zyxel Releases Urgent Security Updates for Critical Vulnerability in NAS Devices
News

Zyxel Releases Urgent Security Updates for Critical Vulnerability in NAS Devices

A significant security hole in Zyxel's network-attached storage (NAS) devices that might allow the execution of arbitrary commands on impacted computers has been fixed with security updates. The vulnerability has been identified as pre-authentication command injection vulnerability and is tracked as CVE-2023-27992 (CVSS score: 9.8). "The pre-authentication command injection vulnerability in some Zyxel NAS devices could allow an unauthenticated attacker to remotely execute some operating system (OS) commands by sending a crafted HTTP request read more Zyxel Releases Urgent Security Updates for Critical Vulnerability in NAS Devices. Stay one step ahead of cyber threats with ReconBee.com. Explore our comprehensive coverage of recent cyber attacks, cybersecurity awareness, and the la...