CVE-2025-54149: Qsync Central
An uncontrolled resource consumption vulnerability has been reported to affect Qsync Central. If a local attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack.
We have already fixed the vulnerability in the following version: Qsync Central 5.0.0.4 ( 2026/01/20 ) and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54149?
CVE-2025-54149 is classified as a high severity vulnerability due to its potential to be exploited for denial-of-service attacks.
How do I fix CVE-2025-54149?
To fix CVE-2025-54149, users should update to Qsync Central version 5.0.0.5 or later.
Who is affected by CVE-2025-54149?
CVE-2025-54149 affects users of Qsync Central versions up to 5.0.0.4.
What type of vulnerability is CVE-2025-54149?
CVE-2025-54149 is an uncontrolled resource consumption vulnerability.
Can CVE-2025-54149 be exploited remotely?
CVE-2025-54149 requires a local attacker with a user account to exploit the vulnerability.