CVE-2025-4679 | Synology Active Backup for Microsoft 365 insufficiently protected credentials (SA_25_06 / EUVD-2025-15423)
A vulnerability classified as problematic has been found in Synology Active Backup for Microsoft 365. This affects an unknown part. The manipulation leads to insufficiently protected credentials.
This vulnerability is uniquely identified as CVE-2025-4679. It is possible to initiate the attack remotely. There is no exploit available.
This product is a managed service. This means that users are not able to maintain vulnerability countermeasures themselves.