Unrated severityNVD Advisory· Published Oct 3, 2025· Updated Oct 3, 2025
Qsync Central
CVE-2025-54153
Description
An SQL injection vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulnerability to execute unauthorized code or commands.
We have already fixed the vulnerability in the following version: Qsync Central 5.0.0.2 ( 2025/07/31 ) and later
Affected products
2- Range: < 5.0.0.2
- QNAP Systems Inc./Qsync Centralv5Range: 5.0.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.