High severity7.8NVD Advisory· Published Jun 3, 2026· Updated Jul 22, 2026
CVE-2022-49036
CVE-2022-49036
Description
An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Backup for Business Recovery Media Creator before 2.5.0-2081 allows local users to execute arbitrary code via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<2.5.0-2081+ 1 more
- (no CPE)range: <2.5.0-2081
- cpe:2.3:a:synology:active_backup_for_business_recovery_media_creator:*:*:*:*:*:*:*:*range: <2.5.0-2081
Patches
Vulnerability mechanics
References
1News mentions
1- Synology: Five Vulnerabilities Disclosed, Including Two High-Severity Code Execution FlawsVypr Intelligence · Jun 3, 2026