Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
QNAP NetBak PC Agent Affected by Recent ASP.NET Core Vulnerability

QNAP NetBak PC Agent Affected by Recent ASP.NET Core Vulnerability

Posted on October 28, 2025October 28, 2025 By CWS

Taiwan-based QNAP Programs says its NetBak PC Agent is doubtlessly affected by a just lately disclosed ASP.NET Core vulnerability that has the “highest ever” CVSS rating for a difficulty within the open supply net growth framework.

Tracked as CVE-2025-55315 (CVSS rating of 9.9), the bug is an HTTP request smuggling defect that enables attackers to bypass safety controls over the community, or hijack different customers’ credentials.

Microsoft patched the vulnerability on October 2025 Patch Tuesday, warning that it might be exploited to leak delicate info, tamper with file contents, or drive a crash throughout the server.

The precise influence from the bug, .NET safety program supervisor Barry Dorrans stated, relies on how an utility was constructed, and will permit attackers to log in as one other person, bypass CSRF checks, make inner requests, and carry out injection assaults.

In line with QNAP, its NetBak PC Agent installs and will depend on ASP.NET Core elements throughout setup, which might end in a susceptible model of the framework working on techniques that haven’t been up to date.

NetBak PC Agent is a Home windows utility that enables customers to again up pc and server contents to a QNAP NAS system, and permits them to revive techniques when wanted.

Given the important function the applying performs in backup/restoration operations, profitable exploitation of CVE-2025-55315 might have dire penalties, doubtlessly permitting attackers to entry backup information.

QNAP urges customers to right away apply the patches for ASP.NET Core, both by reinstalling the agent, or by manually downloading and putting in the most recent framework model.Commercial. Scroll to proceed studying.

The corporate makes no point out of the flaw being exploited in opposition to NetBak PC Agent customers, however vulnerabilities affecting QNAP merchandise have been well-liked targets for risk actors.

Associated: Yr-Previous WordPress Plugin Flaws Exploited to Hack Web sites

Associated: Chrome Zero-Day Exploitation Linked to Hacking Group Adware

Associated: Exploitation of Crucial Adobe Commerce Flaw Places Many eCommerce Websites at Danger

Associated: BIND Updates Tackle Excessive-Severity Cache Poisoning Flaws

Security Week News Tags:Affected, Agent, ASP.NET, Core, NetBak, QNAP, Vulnerability

Post navigation

Previous Post: SimSpace Raises $39 Million for Cyber Range Platform
Next Post: Researchers Expose GhostCall and GhostHire: BlueNoroff’s New Malware Chains

Related Posts

Cybercriminals Trade 183 Million Stolen Credentials on Telegram, Dark Forums Cybercriminals Trade 183 Million Stolen Credentials on Telegram, Dark Forums Security Week News
Major Cybersecurity M&A Deals in January 2026 Major Cybersecurity M&A Deals in January 2026 Security Week News
Chrome, Firefox Updates Resolve High-Severity Memory Bugs Chrome, Firefox Updates Resolve High-Severity Memory Bugs Security Week News
JumpCloud Remote Assist Vulnerability Can Expose Systems to Takeover JumpCloud Remote Assist Vulnerability Can Expose Systems to Takeover Security Week News
Pierce County Library Data Breach Impacts 340,000 Pierce County Library Data Breach Impacts 340,000 Security Week News
Deutsche Bahn Faces Major DDoS Attack Disruption Deutsche Bahn Faces Major DDoS Attack Disruption Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • F5 Resolves Over 50 Security Flaws in Software
  • Windows Vulnerabilities: BitLocker Bypass and CTFMON Exploit
  • Seedworm Group Exploits Signed Binaries for Cyber Attacks
  • Vulnerability in PraisonAI Exploited Within Hours
  • Langflow Vulnerability Exploited for AWS Key Theft

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • F5 Resolves Over 50 Security Flaws in Software
  • Windows Vulnerabilities: BitLocker Bypass and CTFMON Exploit
  • Seedworm Group Exploits Signed Binaries for Cyber Attacks
  • Vulnerability in PraisonAI Exploited Within Hours
  • Langflow Vulnerability Exploited for AWS Key Theft

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark