Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in share file list functionality in Synology Active Backup for Business before 2.7.1-13234, 2.7.1-23234 and 2.7.1-3234 allows remote authenticated users with administrator privileges to read specific files containing non-sensitive information via unspecified vectors.
Metrics
Affected Vendors & Products
References
History
Thu, 13 Feb 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 13 Feb 2025 06:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in share file list functionality in Synology Active Backup for Business before 2.7.1-13234, 2.7.1-23234 and 2.7.1-3234 allows remote authenticated users with administrator privileges to read specific files containing non-sensitive information via unspecified vectors. | |
Weaknesses | CWE-22 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: synology
Published: 2025-02-13T06:26:06.229Z
Updated: 2025-02-13T15:54:15.268Z
Reserved: 2024-09-24T03:58:57.133Z
Link: CVE-2024-47266

Updated: 2025-02-13T15:54:10.886Z

Status : Received
Published: 2025-02-13T07:15:10.383
Modified: 2025-02-13T07:15:10.383
Link: CVE-2024-47266

No data.