CVE-2025-33033: Qsync Central
A path traversal vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data.
We have already fixed the vulnerability in the following version: Qsync Central 4.5.0.7 ( 2025/04/23 ) and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-33033?
CVE-2025-33033 has been classified as a high severity vulnerability due to its potential to allow unauthorized access to sensitive files.
How do I fix CVE-2025-33033?
To fix CVE-2025-33033, update Qsync Central to version 4.5.0.8 or later.
What kind of systems are affected by CVE-2025-33033?
CVE-2025-33033 affects Qsync Central versions up to 4.5.0.7.
Can CVE-2025-33033 be exploited remotely?
Yes, CVE-2025-33033 can be exploited remotely if an attacker gains access to a user account.
What does CVE-2025-33033 allow an attacker to do?
CVE-2025-33033 allows an attacker to read the contents of unexpected files or system data.