An Exposed Dangerous Method or Function vulnerability in Synology C2 Identity Edge Server package in DSM before 1.76.0-0307 allows remote attackers to obtain user credentials from the edge server.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 27 May 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote Credential Retrieval via Exposed Method in Synology C2 Identity Edge Server |
Wed, 27 May 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An Exposed Dangerous Method or Function vulnerability in Synology C2 Identity Edge Server package in DSM before 1.76.0-0307 allows remote attackers to obtain user credentials from the edge server. | |
| Weaknesses | CWE-749 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: synology
Published:
Updated: 2026-05-27T08:39:35.762Z
Reserved: 2025-12-15T06:27:33.147Z
Link: CVE-2025-14713
No data.
Status : Received
Published: 2026-05-27T09:16:26.853
Modified: 2026-05-27T09:16:26.853
Link: CVE-2025-14713
No data.
OpenCVE Enrichment
Updated: 2026-05-27T11:00:13Z
Weaknesses