CNNVD-202602-1975 Information

CNNVD ID

CNNVD-202602-1975

CVE-2025-54152

  • CNNVD Published: 2026-02-11

Description (Chinese)

QNAP Qsync Central是中国台湾威联通科技(QNAP)公司的一个 NAS 上基于云的文件同步服务。 QNAP Qsync Central 5.0.0.4之前版本存在安全漏洞,该漏洞源于使用超出范围的指针偏移,可能导致远程攻击者读取内存敏感部分。

Description (English)

QNAP Qsync Central is a cloud-based document synchronization service on the NAS of Taiwan Universal Technologies (QNAP). Prior to QNAP Qsync Central 5.0.0.4, there was a security loophole, which stemmed from the use of out-of-scope guidelines, which could lead to remote attackers reading sensitive parts of their memory.

Vulnerability Type

其他

Affected Vendor

威联通科技

Published

2026-02-11

Last Modified

2026-02-24

References

https://www.qnap.com/en/security-advisory/qsa-26-02 https://access.redhat.com/security/cve/cve-2025-54152

Patch

https://www.qnap.com/en/security-advisory/qsa-26-02

Share on: