CVE-2025-33040: Qsync Central
An allocation of resources without limits or throttling vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulnerability to prevent other systems, applications, or processes from accessing the same type of resource.
We have already fixed the vulnerability in the following version: Qsync Central 5.0.0.1 ( 2025/07/09 ) and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-33040?
CVE-2025-33040 has been assessed as a moderate severity vulnerability.
How do I fix CVE-2025-33040?
To mitigate CVE-2025-33040, update your Qsync Central to the latest available version.
What systems are affected by CVE-2025-33040?
CVE-2025-33040 specifically affects Qsync Central versions up to 5.0.0.1.
Can CVE-2025-33040 be exploited remotely?
Yes, CVE-2025-33040 can be exploited remotely if an attacker gains user account access.
What risks does CVE-2025-33040 pose to systems?
CVE-2025-33040 may allow attackers to allocate resources without limits, impacting system performance and availability.