Uncontrolled Resource Consumption Vulnerability in Qsync Central by QNAP
CVE-2025-54149
4.9MEDIUM
What is CVE-2025-54149?
An uncontrolled resource consumption vulnerability in Qsync Central can be exploited by local attackers with user account access, potentially leading to denial-of-service attacks. This exploitation impacts the availability of the service, making it critical for users to upgrade to version 5.0.0.4 or later, where the issue has been addressed. For further details, refer to QNAP's security advisory.
Affected Version(s)
Qsync Central 5.0.x.x < 5.0.0.4 ( 2026/01/20 )