CVE-2025-48725Disclosure(qnap / qts)

LOWCVSS 8.1 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to modify memory or crash processes. We have already fixed the vulnerability in the following version: QuTS hero h5.3.2.3354 build 20251225 and later

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-120CWE-121

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • qts
  • quts_hero

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
qtsquts_hero

37 versions affected across 2 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-13: 1Technical Details · 2026-02-13: 102-13
Signal classification1 categories
Disclosure
1100.0%
Full discourse1 post
  • CCB Alert@CCBalert
    Disclosure

    Warning: Multiple Critical & High link-following, buffer overflow in #QNAP #NAS #Qsync CVE-2025-66277, CVE-2025-30269, CVE-2025-30276, CVE-2025-48723, CVE-2025-48724, CVE-2025-48725 & CVE-2025-52868 CVSS: 9.2-8.1 A remote attacker without user interaction can exploit these #Patch

    Post summary

    The post announces several critical buffer overflow vulnerabilities affecting QNAP NAS/Qsync, providing CVE IDs, CVSS scores, and a warning that remote attackers can exploit them, but it does not disclose PoCs, exploits, or patches.

    01002231
    7.2K followersView on X
CPE platform detail37 entries

37 of 37 entries

PartVendorProductVersionTarget SWTarget HW
OSqnapqts5.2.0.2737--
OSqnapqts5.2.0.2744--
OSqnapqts5.2.0.2782--
OSqnapqts5.2.0.2802--
OSqnapqts5.2.0.2823--
OSqnapqts5.2.0.2851--
OSqnapqts5.2.0.2860--
OSqnapqts5.2.1.2930--
OSqnapqts5.2.2.2950--
OSqnapqts5.2.3.3006--
OSqnapqts5.2.4.3070--
OSqnapqts5.2.4.3079--
OSqnapqts5.2.4.3092--
OSqnapqts5.2.5.3145--
OSqnapqts5.2.6.3195--
OSqnapqts5.2.6.3229--
OSqnapqts5.2.7.3256--
OSqnapqts5.2.7.3297--
OSqnapqts5.2.8.3332--
OSqnapquts_heroh5.2.0.2737--
OSqnapquts_heroh5.2.0.2782--
OSqnapquts_heroh5.2.0.2789--
OSqnapquts_heroh5.2.0.2802--
OSqnapquts_heroh5.2.0.2823--
OSqnapquts_heroh5.2.0.2851--
OSqnapquts_heroh5.2.0.2860--
OSqnapquts_heroh5.2.1.2929--
OSqnapquts_heroh5.2.1.2940--
OSqnapquts_heroh5.2.2.2952--
OSqnapquts_heroh5.2.3.3006--
OSqnapquts_heroh5.2.4.3070--
OSqnapquts_heroh5.2.4.3079--
OSqnapquts_heroh5.2.5.3138--
OSqnapquts_heroh5.2.6.3195--
OSqnapquts_heroh5.2.7.3256--
OSqnapquts_heroh5.2.7.3297--
OSqnapquts_heroh5.2.8.3321--

Explore more