CVE-2023-5748: Synology SSL VPN Client
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in cgi component in Synology SSL VPN Client before 1.4.7-0687 allows local users to conduct denial-of-service attacks via unspecified vectors.
Affected products
- Synology SSL VPN Client: before 1.4.7-0687 (fixed in 1.4.7-0687)
Published 2023-11-07. Last modified 2026-06-17.