CVE-2025-54170
EUVD-2025-20740911.02.2026, 13:15
An out-of-bounds read vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulnerability to obtain secret data. We have already fixed the vulnerability in the following version: Qsync Central 5.0.0.4 ( 2026/01/20 ) and laterEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| qnap | qsync_central | 5.0.0.0 ≤ 𝑥 < 5.0.0.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration