High severity8.6NVD Advisory· Published May 27, 2026· Updated Jun 17, 2026
CVE-2025-30028
CVE-2025-30028
Description
A vulnerability in Active Backup for Business allows unauthorized remote attackers to read arbitrary files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:synology:active_backup_for_business:2.7.1-13234:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:synology:active_backup_for_business:2.7.1-13234:*:*:*:*:*:*:*
- cpe:2.3:a:synology:active_backup_for_business:2.7.1-23234:*:*:*:*:*:*:*
- cpe:2.3:a:synology:active_backup_for_business:2.7.1-3234:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
1- www.synology.com/en-global/security/advisory/Synology_SA_25_02nvdVendor Advisory
News mentions
1- Synology: 10 CVEs Disclosed Across NAS, BeeStation, and Backup ProductsVypr Intelligence · May 27, 2026