CVE-2025-13392

Improper check for unusual or exceptional conditions vulnerability in SSO in Synology DiskStation Manager (DSM) before 7.2.2-72806-5 and 7.3.1-86003-1 (7.2.1-69057 is not affected) allows remote attackers to bypass authentication with prior knowledge of the distinguished name (DN).
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*
cpe:2.3:o:synology:diskstation_manager:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-05-27 09:16

Updated : 2026-06-17 08:34


NVD link : CVE-2025-13392

Mitre link : CVE-2025-13392

CVE.ORG link : CVE-2025-13392


JSON object : View

Products Affected

synology

  • diskstation_manager
CWE
CWE-754

Improper Check for Unusual or Exceptional Conditions