PT-2026-1077 · Qnap · Quts Hero+1

Coral

·

Published

2026-01-02

·

Updated

2026-01-02

·

CVE-2025-52872

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions QNAP versions prior to QTS 5.2.7.3256 build 20250913 QNAP versions prior to QuTS hero h5.2.7.3256 build 20250913 QNAP versions prior to QuTS hero h5.3.0.3192 build 20250716
Description A buffer overflow issue exists in QNAP operating systems. Successful exploitation could allow a remote attacker to modify memory or crash processes if they have obtained a user account.
Recommendations Update QTS to version 5.2.7.3256 build 20250913 or later. Update QuTS hero to version h5.2.7.3256 build 20250913 or later. Update QuTS hero to version h5.3.0.3192 build 20250716 or later.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-52872

Affected Products

Qts
Quts Hero