CVE-2023-52947: Synology Active Backup For Business Agent

Low severity, CVSS 3.3. EPSS: 0.2% chance of exploitation in the next 30 days.

Missing authentication for critical function vulnerability in logout functionality in Synology Active Backup for Business Agent before 2.6.3-3101 allows local users to logout the client via unspecified vectors. The backup functionality will continue to operate and will not be affected by the logout.

Affected products

  • Synology Active Backup For Business Agent: before 2.6.0-3101 (fixed in 2.6.0-3101)

Published 2024-09-26. Last modified 2026-06-17.