Arbitrary Code Execution Vulnerability in Synology Active Backup for Business Recovery Media Creator
CVE-2022-49036
7.8HIGH
Key Information:
- Vendor
Synology
- Vendor
- CVE Published:
- 3 June 2026
What is CVE-2022-49036?
An inclusion of functionality from an untrusted control sphere in the OpenSSL configuration for Synology's Active Backup for Business Recovery Media Creator prior to version 2.5.0-2081 permits local users to execute arbitrary code through unspecified means. This vulnerability could allow attackers to compromise system integrity and perform unauthorized operations.
Affected Version(s)
Synology Active Backup for Business Recovery Media Creator *