CVE-2024-47265: Path Traversal
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in encrypted share umount functionality in Synology Active Backup for Business before 2.7.1-13234, 2.7.1-23234 and 2.7.1-3234 allows remote authenticated users to write specific files via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47265?
CVE-2024-47265 is classified as a high severity vulnerability due to its potential impact on system integrity.
How do I fix CVE-2024-47265?
To fix CVE-2024-47265, upgrade Synology Active Backup for Business to version 2.7.1-13234 or later.
Who is affected by CVE-2024-47265?
CVE-2024-47265 affects users of Synology Active Backup for Business versions prior to 2.7.1-13234.
What type of vulnerability is CVE-2024-47265?
CVE-2024-47265 is a Path Traversal vulnerability that allows remote authenticated users to write specific files.
What can attackers do with CVE-2024-47265?
Attackers can exploit CVE-2024-47265 to write arbitrary files on the system, potentially leading to further exploitation.