PT-2025-35254 · Qnap · Qnap License Center

Milan Solanki

·

Published

2025-08-29

·

Updated

2025-12-05

·

CVE-2025-22483

CVSS v4.0

7.1

High

VectorAV:N/AC:H/AT:N/PR:H/UI:A/VC:L/VI:H/VA:H/SC:L/SI:H/SA:H
Name of the Vulnerable Software and Affected Versions QNAP License Center versions prior to 1.8.51 QNAP License Center versions prior to 1.9.51
Description A cross-site scripting (XSS) vulnerability affects QNAP operating system versions. A remote attacker gaining an administrator account can exploit this issue to bypass security mechanisms or read application data.
Recommendations Update QNAP License Center to version 1.8.51 or later. Update QNAP License Center to version 1.9.51 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-22483

Affected Products

Qnap License Center