CVE-2025-14713
HIGH
7,5
Source: [email protected]
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: none
Availability: none
Description
AI Translation Available
An Exposed Dangerous Method or Function vulnerability in Synology C2 Identity Edge Server package in DSM before 1.76.0-0307 allows remote attackers to obtain user credentials from the edge server.
749
Exposed Dangerous Method or Function
IncompleteCommon Consequences
Security Scopes Affected:
Integrity
Confidentiality
Availability
Access Control
Other
Potential Impacts:
Gain Privileges Or Assume Identity
Read Application Data
Modify Application Data
Execute Unauthorized Code Or Commands
Other
Applicable Platforms
All platforms may be affected
https://www.synology.com/en-global/security/advisory/Synology_SA_25_18