Back

HIGH

An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Backup for Business Recovery Media Creator before 2.5.0-2081 allows local users to execute arbitrary code via unspecified vectors

Published Jun 3, 2026

Description

An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Backup for Business Recovery Media Creator before 2.5.0-2081 allows local users to execute arbitrary code via unspecified vectors.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner synology
Published Jun 3, 2026
Updated Jun 3, 2026
Reserved Sep 24, 2024
CISA Vulnrichment
Updated Jun 3, 2026
NVD
Status Analyzed
Modified Jul 22, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner synology
Published Jun 3, 2026
Updated Jun 3, 2026
Exploited since n/a
EUVD-2022-55998