CVE-2022-49036: Synology Active Backup For Business Recovery Media Creator
High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.
An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Backup for Business Recovery Media Creator before 2.5.0-2081 allows local users to execute arbitrary code via unspecified vectors.
Affected products
- Synology Active Backup For Business Recovery Media Creator: before 2.5.0-2081 (fixed in 2.5.0-2081)
Published 2026-06-03. Last modified 2026-07-22.