PT-2025-40547 · Qnap · Qsync Central

Coral

·

Published

2025-10-03

·

Updated

2025-10-03

·

CVE-2025-44006

CVSS v4.0

7.1

High

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Qsync Central versions prior to 5.0.0.1
Description A flaw exists in Qsync Central that allows a remote attacker, having gained a user account, to exhaust resources and potentially prevent other systems, applications, or processes from accessing those resources. The issue involves an allocation of resources without limits or throttling.
Recommendations Update to Qsync Central version 5.0.0.1 or later.

Fix

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

CVE-2025-44006

Affected Products

Qsync Central