Home
MEDIUM: 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Any version
affected
Description
A vulnerability in Synology Active Backup for Microsoft 365 allows remote authenticated attackers to obtain sensitive information via unspecified vectors.
Problem types
Insufficiently Protected Credentials
Product status
Credits
Leonid Hartmann of modzero
References
modzero.com/...s-open-backdoors-synology-active-backup-m365/
modzero.com/...25-02_modzero_Synology-Active-Backup-M365.pdf
www.synology.com/...obal/security/advisory/Synology_SA_25_06 (Synology-SA-25:06 Active Backup for Microsoft 365)