CVE-2017-9553: Synology Diskstation Manager

High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.

A design flaw in SYNO.API.Encryption in Synology DiskStation Manager (DSM) before 6.1.3-15152 allows remote attackers to bypass the encryption protection mechanism via the crafted version parameter.

Affected products

  • Synology Diskstation Manager: up to and including 6.1.1-15101-4

Published 2017-07-24. Last modified 2026-06-17.