logo

Root via Telnet: Why You Must Patch Your Synology NAS Against This Decade-Old Ghost

ID: 44c40029-9546-5a1a-8ce6-953222c6160d

STIX ID: report--44c40029-9546-5a1a-8ce6-953222c6160d

Feed Name: securityonline.info

Threat Score
70/100

Date Published: 2026-02-03

Date Updated: 2026-04-23

Author: Ddos

...
...

Synology released critical firmware updates on January 29, 2026 addressing CVE-2026-24061, a vulnerability in the DSM telnetd terminal service that the vendor rates as Critical/High-Risk. The advisory lists affected DSM 7.2/7.3 series and required patch versions, warns that the flaw exists in core system files even when Telnet is disabled, and urges immediate updating to mitigate potential local privilege escalation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.