PT-2025-40553 · Qnap · Qsync Central
CVSS v4.0
7.1
Alta
| Vetor | AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Qsync Central versions prior to 5.0.0.2
Description
A flaw exists in Qsync Central that allows a remote attacker, having obtained a user account, to exhaust resources and potentially prevent other systems, applications, or processes from accessing those resources. The issue stems from a lack of limits or throttling on resource allocation.
Recommendations
Update to Qsync Central version 5.0.0.2 or later.
Correção
Allocation of Resources Without Limits
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Qsync Central