Missing encryption of sensitive data vulnerability in settings functionality in...
Vulnerability Description
Missing encryption of sensitive data vulnerability in settings functionality in Synology Active Backup for Business Agent before 2.7.0-3221 allows local users to obtain user credential via unspecified vectors.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-52948
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Zhao Runzi (赵润梓)
More from Synology
View All →Affected Vendor
Synology
View all reports →