CVE-2023-52947: Medium severity synology active backup for business agent vulnerability
Missing authentication for critical function vulnerability in logout functionality in Synology Active Backup for Business Agent before 2.6.3-3101 allows local users to logout the client via unspecified vectors. The backup functionality will continue to operate and will not be affected by the logout.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-52947?
CVE-2023-52947 is categorized as a critical vulnerability due to its potential impact on the logout functionality.
How do I fix CVE-2023-52947?
To fix CVE-2023-52947, update Synology Active Backup for Business Agent to version 2.6.3-3101 or later.
Who is affected by CVE-2023-52947?
CVE-2023-52947 affects users of Synology Active Backup for Business Agent versions prior to 2.6.3-3101.
What is the impact of CVE-2023-52947?
The impact of CVE-2023-52947 allows local users to log out of the client without impacting the backup functionality.
Is there a workaround for CVE-2023-52947?
Currently, there is no specific workaround for CVE-2023-52947; updating the software is recommended.