PT-2026-7565 · Qnap Systems+1 · Qsync Central

·

CVE-2025-58470

·

Published

2026-02-11

·

Updated

2026-02-11

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Qsync Central versions prior to 5.0.0.4
Description A path traversal issue allows a remote attacker with a user account to read unexpected files or system data. Path traversal is a technique where an attacker uses special characters in a file path to access directories and files outside of the intended folder.
Recommendations Update to version 5.0.0.4 or later.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-58470

Affected Products

Qsync Central