CVE-2025-59388: Hyper Data Protector
Published Mar 12, 2026
·Updated
A use of hard-coded password vulnerability has been reported to affect Hyper Data Protector. The remote attackers can then exploit the vulnerability to gain unauthorized access.
We have already fixed the vulnerability in the following version: Hyper Data Protector 2.3.1.455 and later
Affected Software
2 affected components
hyper Hyper Data Protector<2.3.1.455
QNAP Hyper Data Protector>=2.2.0.284<2.3.1.455
Remediation
Information
We have already fixed the vulnerability in the following version:
Hyper Data Protector 2.3.1.455 and later
Event History
Mar 12, 2026
CVE Published
via MITRE·01:41 AM
Data Sourced
via MITRE·01:41 AM
RemedyDescriptionWeakness
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-59388?
CVE-2025-59388 is considered a high severity vulnerability due to its potential for unauthorized remote access.
2
How do I fix CVE-2025-59388?
To fix CVE-2025-59388, upgrade to Hyper Data Protector version 2.3.1.455 or later.
3
Who is affected by CVE-2025-59388?
CVE-2025-59388 affects all versions of Hyper Data Protector prior to version 2.3.1.455.
4
What type of vulnerability is CVE-2025-59388?
CVE-2025-59388 is a use of hard-coded password vulnerability.
5
Can CVE-2025-59388 be exploited remotely?
Yes, CVE-2025-59388 can be exploited remotely by attackers to gain unauthorized access.