PT-2025-40585 · Qnap · Qsync Central

Coral

·

Published

2025-10-03

·

Updated

2025-10-04

·

CVE-2025-52867

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Qsync Central versions prior to 5.0.0.2
Description An uncontrolled resource consumption issue exists in Qsync Central. A remote attacker who obtains a user account can potentially launch a denial-of-service (DoS) attack.
Recommendations Update to Qsync Central version 5.0.0.2 or later.

Fix

DoS

Resource Exhaustion

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

BDU:2025-16027
CVE-2025-52867

Affected Products

Qsync Central