CVE-2026-4793: High severity Synology Synology Assistant vulnerability
Published Aug 3, 2026
·Updated
An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or write arbitrary files and conduct denial-of-service during installation.
Affected Software
1 affected component
Synology Synology Assistant<7.0.7-50095
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Synology Assistantto a version that resolves this vulnerability.Fixed in 7.0.7-50095
Event History
Aug 3, 2026
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-4793?
CVE-2026-4793 has a severity rating of high, with a score of 7.3.
2
How do I fix CVE-2026-4793?
To fix CVE-2026-4793, update Synology Assistant to version 7.0.7-50095 or later.
3
What kind of vulnerability is CVE-2026-4793?
CVE-2026-4793 is an incorrect default permissions vulnerability.
4
What impact does CVE-2026-4793 have on local users?
CVE-2026-4793 allows local users to read or write arbitrary files and potentially conduct denial-of-service.
5
Which software is affected by CVE-2026-4793?
CVE-2026-4793 affects Synology Assistant prior to version 7.0.7-50095.