CVE-2025-62848PoC(qnap / qts)

LOWCVSS 7.5 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. The remote attackers can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.2.7.3297 build 20251024 and later QuTS hero h5.2.7.3297 build 20251024 and later QuTS hero h5.3.1.3292 build 20251024 and later

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-476

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • qts
  • quts_hero

Threat summary

  • Public PoC is present in monitored signal
  • 1 mentions across 1 observed day

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
qtsquts_hero

37 versions affected across 2 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-03-18: 1PoC Mentioned / Linked · 2026-03-18: 1Technical Details · 2026-03-18: 103-18
Signal classification1 categories
PoC
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • TheZDIBugs@TheZDIBugs
    PoC

    [ZDI-26-199|CVE-2025-62848] (Pwn2Own) QNAP TS-453E conn_log_tool Format String Remote Code Execution Vulnerability (CVSS 5.5; Credit: @YingMuo, @ljp_tw, @h3xr4bb1t, and @nella17tw of DEVCORE Research Team) https://www.zerodayinitiative.com/advisories/ZDI-26-199/

    Post summary

    The post announces a format‑string RCE vulnerability in QNAP TS‑453E, credits the researchers, links to a Zero Day Initiative advisory which likely contains a PoC, but does not disclose active exploitation, patches, or detailed exploitation tools.

    0101331.2K
    5.4K followersView on X
CPE platform detail37 entries

37 of 37 entries

PartVendorProductVersionTarget SWTarget HW
OSqnapqts5.2.0.2737--
OSqnapqts5.2.0.2744--
OSqnapqts5.2.0.2782--
OSqnapqts5.2.0.2802--
OSqnapqts5.2.0.2823--
OSqnapqts5.2.0.2851--
OSqnapqts5.2.0.2860--
OSqnapqts5.2.1.2930--
OSqnapqts5.2.2.2950--
OSqnapqts5.2.3.3006--
OSqnapqts5.2.4.3070--
OSqnapqts5.2.4.3079--
OSqnapqts5.2.4.3092--
OSqnapqts5.2.5.3145--
OSqnapqts5.2.6.3195--
OSqnapqts5.2.6.3229--
OSqnapqts5.2.7.3256--
OSqnapquts_heroh5.2.0.2737--
OSqnapquts_heroh5.2.0.2782--
OSqnapquts_heroh5.2.0.2789--
OSqnapquts_heroh5.2.0.2802--
OSqnapquts_heroh5.2.0.2823--
OSqnapquts_heroh5.2.0.2851--
OSqnapquts_heroh5.2.0.2860--
OSqnapquts_heroh5.2.1.2929--
OSqnapquts_heroh5.2.1.2940--
OSqnapquts_heroh5.2.2.2952--
OSqnapquts_heroh5.2.3.3006--
OSqnapquts_heroh5.2.4.3070--
OSqnapquts_heroh5.2.4.3079--
OSqnapquts_heroh5.2.5.3138--
OSqnapquts_heroh5.2.6.3195--
OSqnapquts_heroh5.2.7.3256--
OSqnapquts_heroh5.3.0.3115--
OSqnapquts_heroh5.3.0.3145--
OSqnapquts_heroh5.3.0.3192--
OSqnapquts_heroh5.3.1.3250--

Explore more