An origin validation error vulnerability in Synology Active Backup for Business Agent before 3.1.0-4967 allows local users to write arbitrary files with restricted content during installation.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 27 May 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local User File Write Vulnerability in Synology Active Backup for Business Agent |
Wed, 27 May 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An origin validation error vulnerability in Synology Active Backup for Business Agent before 3.1.0-4967 allows local users to write arbitrary files with restricted content during installation. | |
| Weaknesses | CWE-346 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: synology
Published:
Updated: 2026-05-27T08:43:05.069Z
Reserved: 2025-12-05T03:19:16.760Z
Link: CVE-2025-66592
No data.
Status : Received
Published: 2026-05-27T09:16:27.633
Modified: 2026-05-27T09:16:27.633
Link: CVE-2025-66592
No data.
OpenCVE Enrichment
Updated: 2026-05-27T10:30:28Z
Weaknesses