CVE-2025-57714

An unquoted search path or element vulnerability has been reported to affect NetBak Replicator. If a local attacker gains a user account, they can then exploit the vulnerability to execute unauthorized code or commands. We have already fixed the vulnerability in the following version: NetBak Replicator 4.5.15.0807 and later
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:qnap:netbak_replicator:*:*:*:*:*:*:*:*

History

08 Dec 2025, 15:42

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
References () https://www.qnap.com/en/security-advisory/qsa-25-39 - () https://www.qnap.com/en/security-advisory/qsa-25-39 - Vendor Advisory
First Time Qnap
Qnap netbak Replicator
CPE cpe:2.3:a:qnap:netbak_replicator:*:*:*:*:*:*:*:*

03 Oct 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-03 19:15

Updated : 2025-12-08 15:42


NVD link : CVE-2025-57714

Mitre link : CVE-2025-57714

CVE.ORG link : CVE-2025-57714


JSON object : View

Products Affected

qnap

  • netbak_replicator
CWE
CWE-428

Unquoted Search Path or Element