QNAP HBS 3 Hybrid Backup Sync
cpe:2.3:a:qnap:hybrid_backup_sync:*:*:*:*:*:*:*
- ~26.1
A vulnerability allowing external control of file names or paths has been identified in QNAP HBS 3 Hybrid Backup Sync versions 26.1.x and earlier. This vulnerability can be exploited by an attacker with local network access to read or modify files and directories.
Exploitation of this vulnerability could lead to unauthorized reading or modification of files and directories on the affected system.
Users are advised to update HBS 3 Hybrid Backup Sync to version 26.2.0.938 or later. Instructions for updating the application are available on the QNAP website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.