Description
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.2.6.3195 build 20250715 and later
Problem types
Product status
5.2.x before 5.2.6.3195 build 20250715
Credits
coral
References
www.qnap.com/en/security-advisory/qsa-25-36