CVE Database
/

CVE-2025-62840

Back to search

CVE-2025-62840

Published: Jan 2, 2026

Modified: Jan 5, 2026

PUBLISHED

Description

A generation of error message containing sensitive information vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If an attacker gains local network access, they can then exploit the vulnerability to read application data. We have already fixed the vulnerability in the following version: HBS 3 Hybrid Backup Sync 26.2.0.938 and later

VendorProductVersions

QNAP Systems Inc.

HBS 3 Hybrid Backup Sync

affected
26.1.x - < 26.2.0.938

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now