CVE-2025-30028High· 8.6▾ TwilightA vulnerability in Active Backup for Business allows unauthorized remote attackers to read arbitrary files.
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 47.3 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.4%
A vulnerability in Active Backup for Business allows unauthorized remote attackers to read arbitrary files.
active_backup_for_business = 2.7.1-23234active_backup_for_business = 2.7.1-13234active_backup_for_business = 2.7.1-3234Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-13683Low· 2.7An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in EventScheduler API in Synology DiskStation Manager (DSM) before 7.2.1-69057-12, 7.2.2-72806-9, 7.3.2-86009-4 and 7.4-90075 allows re…
CVE-2026-4036Medium· 6.5An improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Sharing API in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, 7.2.2-72806-7 and 7.3.2-86009-2 allows remote authenticated…
CVE-2025-14666High· 7.3A weakness has been identified in itsourcecode COVID Tracking System 1.0
CVE-2025-14667High· 7.3A security vulnerability has been detected in itsourcecode COVID Tracking System 1.0
CVE-2025-14668High· 7.3A vulnerability was detected in campcodes Advanced Online Examination System 1.0
CVE-2025-14664High· 7.3A vulnerability was identified in Campcodes Supplier Management System 1.0