[WID-SEC-2026-2140] Synology MailPlus Server: Mehrere Schwachstellen CVSS Base Score 10.0 (kritisch) CVSS Temporal Score 8.7 (hoch) Remoteangriff ja Datum 30.06.2026 Stand 01.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Sonstiges Produktbeschreibung Synology MailPlus Server ist eine E-Mail-Lösung, die ein Synology NAS in einen privaten Mailserver verwandelt. Produkte 30.06.2026 Synology MailPlus Server DSM 7.3 <4.0.1-31663 Synology MailPlus Server DSM 7.2.2 <4.0.1-21663 Synology MailPlus Server DSM 7.2.1 <4.0.1-21663 Angriff Angriff Ein Angreifer kann mehrere Schwachstellen in Synology MailPlus Server ausnutzen, um Dateien zu manipulieren, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen oder einen Denial-of-Service-Zustand auszulösen. CVE Informationen Versionshistorie Feedback zum Advisory geben
Multiple critical vulnerabilities in Synology MailPlus Server allow a remote attacker to manipulate files, bypass security controls, disclose sensitive information, or cause a denial-of-service condition. The CVSS Base Score is 10.0 (Critical). Affected versions are Synology MailPlus Server on DSM 7.3 prior to version 4.0.1-31663, and on DSM 7.2.2 and 7.2.1 prior to version 4.0.1-21663.