File Path Control Flaw in HBS 3 Hybrid Backup Sync by QNAP
CVE-2025-62842
7HIGH
What is CVE-2025-62842?
A file path control vulnerability has been identified in HBS 3 Hybrid Backup Sync, affecting users with local network access. An attacker leveraging this flaw can potentially gain unauthorized access to read or modify sensitive files and directories. This issue is mitigated in versions 26.2.0.938 and later, so users are strongly encouraged to update to the latest release to protect their data.
Affected Version(s)
HBS 3 Hybrid Backup Sync 26.1.x < 26.2.0.938