CVE-2024-47264
EUVD-2025-492013.02.2025, 07:15
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in agent-related functionality in Synology Active Backup for Business before 2.7.1-13234, 2.7.1-23234 and 2.7.1-3234 allows remote authenticated users with administrator privileges to delete arbitrary files via unspecified vectors.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| synology | active_backup_for_business_agent | 𝑥 < 2.7.1-13234 |
| synology | active_backup_for_business_agent | 𝑥 < 2.7.1-3234 |
| synology | active_backup_for_business_agent | 𝑥 < 2.7.1-23234 |
𝑥
= Vulnerable software versions