CVE-2025-29898: Qsync Central
An uncontrolled resource consumption vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack.
We have already fixed the vulnerability in the following version: Qsync Central 4.5.0.7 ( 2025/04/23 ) and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-29898?
CVE-2025-29898 has been reported as a critical vulnerability due to its potential to enable denial-of-service attacks.
How do I fix CVE-2025-29898?
To fix CVE-2025-29898, update Qsync Central to version 4.5.0.8 or later.
What types of attacks can be carried out using CVE-2025-29898?
An attacker can exploit CVE-2025-29898 to conduct denial-of-service (DoS) attacks when exploiting an acquired user account.
Which versions of Qsync Central are affected by CVE-2025-29898?
Qsync Central versions prior to 4.5.0.8 are affected by CVE-2025-29898.
Who can exploit CVE-2025-29898?
CVE-2025-29898 can be exploited by remote attackers who have gained access to a user account on Qsync Central.