PT-2025-40590 · Qnap · Qnap Authenticator

Andr.Ess

·

Published

2025-10-03

·

Updated

2025-12-11

·

CVE-2025-54154

CVSS v4.0

6.9

Medium

VectorAV:P/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions QNAP Authenticator versions prior to 1.3.1.1227
Description An improper authentication issue exists in QNAP Authenticator. An attacker with physical access can exploit this to compromise system security.
Recommendations Update to QNAP Authenticator version 1.3.1.1227 or later.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2025-54154

Affected Products

Qnap Authenticator