An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in Backup.Repository webapi component in Synology Hyper Backup before 4.1.2-4036 allows remote authenticated users with administrator privileges to write specific files containing non-sensitive information via unspecified vectors.
Metrics
Affected Vendors & Products
References
History
Wed, 03 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 03 Jun 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Path Traversal in Synology Hyper Backup Allows Admin Write Access |
Wed, 03 Jun 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in Backup.Repository webapi component in Synology Hyper Backup before 4.1.2-4036 allows remote authenticated users with administrator privileges to write specific files containing non-sensitive information via unspecified vectors. | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: synology
Published:
Updated: 2026-06-03T13:35:35.893Z
Reserved: 2024-09-24T03:58:57.132Z
Link: CVE-2024-47263
Updated: 2026-06-03T15:49:26.191Z
Status : Received
Published: 2026-06-03T14:16:26.250
Modified: 2026-06-03T14:16:26.250
Link: CVE-2024-47263
No data.
OpenCVE Enrichment
Updated: 2026-06-03T15:30:26Z