Qsync Central Resource Exhaustion Vulnerability

Vulnerability

A vulnerability allowing allocation of resources without limits or throttling has been reported in Qsync Central versions 4.x. This issue can be exploited by remote attackers who gain access to a user account, allowing them to disrupt resource availability for other systems, applications, or processes.

Impact

Exploitation of this vulnerability can lead to resource exhaustion, causing disruptions in service by preventing other systems or processes from accessing necessary resources.

Remediation

Users are advised to update Qsync Central to version 5.0.0.1 or later. Instructions for updating Qsync Central are available on the QNAP website.

Added: Oct 3, 2025, 6:21 PM
Updated: Oct 3, 2025, 6:21 PM

Vulnerability Rating

Custom Algorithm
spread
6.2
impact
2.5
exploitability
5.2
remediation
7.7
relevance
0.6
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.