Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.
HTTP/1.1 200 OK Server: nginx Date: Tue, 14 Jan 2025 02:43:05 GMT Content-Type: text/html; charset="UTF-8" Transfer-Encoding: chunked Connection: keep-alive Keep-Alive: timeout=20 Cache-control: no-store X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Content-Security-Policy: base-uri 'self'; connect-src data: ws: wss: http: https:; default-src 'self' 'unsafe-eval' data: blob: https://*.synology.com https://www.synology.cn/ https://help.synology.cn/; font-src 'self' data: https://*.googleapis.com https://*.gstatic.com; form-action 'self'; frame-ancestors 'self'; frame-src 'self' data: blob: https://*.synology.com https://*.synology.cn http://*.synology.com http://*.synology.cn; img-src 'self' data: blob: https://*.google.com https://*.googleapis.com http://*.googlecode.com https://*.gstatic.com https://global.download.synology.com; media-src 'self' data: about: https://*.synology.com https://help.synology.cn; script-src 'self' 'unsafe-eval' data: blob: https://maps.google.com https://ajax.googleapis.com https://help.synology.com https://help.synology.cn; style-src 'self' 'unsafe-inline' https://*.googleapis.com; Synology DiskStation Manager (DSM): Version: 7.1.1-42962 Hostname: BackUpNas
Certificate: Data: Version: 3 (0x2) Serial Number: 04:1e:fa:75:ab:f6:bb:e4:73:23:35:00:97:18:59:4c:08:8d Signature Algorithm: ecdsa-with-SHA384 Issuer: C=US, O=Let's Encrypt, CN=E6 Validity Not Before: Nov 19 05:39:09 2024 GMT Not After : Feb 17 05:39:08 2025 GMT Subject: CN=backupfek.synology.me Subject Public Key Info: Public Key Algorithm: id-ecPublicKey Public-Key: (256 bit) pub: 04:d4:13:97:8a:3e:54:c2:6e:8b:59:3a:8b:d5:02: 2d:e3:34:ce:43:84:b2:73:77:c8:39:55:88:0b:93: d7:39:33:9a:54:85:0f:b4:d5:23:da:07:d7:e6:df: 4b:4a:57:5d:57:76:74:92:84:1f:87:22:ce:f2:e5: 31:1b:13:14:c0 ASN1 OID: prime256v1 NIST CURVE: P-256 X509v3 extensions: X509v3 Key Usage: critical Digital Signature X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 2E:98:3F:8D:10:73:F9:74:55:4E:EE:E8:FF:E5:D7:5D:23:B1:92:A8 X509v3 Authority Key Identifier: 93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2 Authority Information Access: OCSP - URI:http://e6.o.lencr.org CA Issuers - URI:http://e6.i.lencr.org/ X509v3 Subject Alternative Name: DNS:backupfek.synology.me X509v3 Certificate Policies: Policy: 2.23.140.1.2.1 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53: D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7 Timestamp : Nov 19 06:37:39.397 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:F7:2A:93:93:25:71:D1:65:85:5F:DC: 82:9E:B8:91:CB:73:BB:15:9E:95:99:05:2E:55:7D:75: 59:33:D3:25:AC:02:21:00:A2:1C:4E:BF:72:3F:07:01: CC:BE:D6:BA:AB:B3:89:44:C2:44:A4:16:40:22:6E:55: 13:50:51:DA:CB:93:F8:48 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9: 1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08 Timestamp : Nov 19 06:37:39.438 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:66:89:C6:3F:72:1C:4E:4A:C4:2C:6B:CB: 65:12:D5:01:00:EE:CC:0F:AE:A5:AD:B2:99:8A:9C:06: E0:90:EA:67:02:20:55:C0:7C:D9:D9:CF:20:E4:1F:EF: 19:37:2E:F5:88:34:49:EB:76:01:75:AF:0D:D3:5E:16: AC:2C:FF:4B:3A:E5 Signature Algorithm: ecdsa-with-SHA384 Signature Value: 30:65:02:31:00:8e:a5:69:04:24:75:8e:03:0e:2b:fa:26:e9: f5:c9:71:c0:15:ea:b0:7e:53:73:9c:94:7a:48:a9:a7:5c:16: 1e:7e:11:0f:b6:de:50:41:35:07:33:a7:11:5b:de:da:4b:02: 30:22:ac:78:8f:24:28:98:b3:7c:a6:e9:33:7c:95:ea:39:60: bd:d7:31:85:24:17:2b:a4:77:17:27:5f:ed:ad:d8:c2:78:26: 06:46:18:92:39:96:35:4d:30:f8:83:92:81
Shodan ® - All rights reserved