PT-2026-1077 · Qnap · Quts Hero+1
Coral
·
Published
2026-01-02
·
Updated
2026-01-02
·
CVE-2025-52872
CVSS v3.1
8.1
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
QNAP versions prior to QTS 5.2.7.3256 build 20250913
QNAP versions prior to QuTS hero h5.2.7.3256 build 20250913
QNAP versions prior to QuTS hero h5.3.0.3192 build 20250716
Description
A buffer overflow issue exists in QNAP operating systems. Successful exploitation could allow a remote attacker to modify memory or crash processes if they have obtained a user account.
Recommendations
Update QTS to version 5.2.7.3256 build 20250913 or later.
Update QuTS hero to version h5.2.7.3256 build 20250913 or later.
Update QuTS hero to version h5.3.0.3192 build 20250716 or later.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Qts
Quts Hero