Skip to content
Critical ASP.NET Core Vulnerability Affects QNAP NetBak PC Agent

Critical ASP.NET Core Vulnerability Affects QNAP NetBak PC Agent

First seen 2 Nov 2025, 16:14 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

QNAP has identified a critical vulnerability (CVE-2025-55315) in its NetBak PC Agent for Windows, which is linked to the Kestrel server. This flaw enables attackers to perform HTTP request smuggling, potentially allowing them to hijack credentials, access sensitive data, modify server files, or trigger denial-of-service conditions. Users are urged to apply patches to mitigate the risk associated with this vulnerability, which has a CVSS score of 9.9.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 213d ago How this analysis works

More articles in this cluster (2)