Complex Mathematics

QNAP warns of critical flaw in its Windows backup software, so update now



  • CVE-2025-55315 allows HTTP request smuggling in ASP.NET Core (severity 9.9/10)
  • QNAP urges NetBak PC Agent users to patch affected ASP.NET Core components
  • Updates available via reinstall or manual .NET 8.0 Runtime installation

QNAP is warning its customers to patch a critical ASP.NET Core vulnerability, and thus protect their NetBak PC Agent installations.

In a security advisory, the NAS device maker said Microsoft recently disclosed a bug affecting ASP.NET Core that “could allow an attacker to bypass security controls through HTTP Request Smuggling.”





Source link