Ce mail provient de l'extérieur, restons vigilants

=====================================================================

                            CERT-Renater

                Note d'Information No. 2025/VULN779
_____________________________________________________________________

DATE                : 10/11/2025

HARDWARE PLATFORM(S): /

OPERATING SYSTEM(S): Systems running Malware Remover versions prior to
                                6.6.8.20251023.

=====================================================================
https://www.qnap.com/en/security-advisory/qsa-25-47
_____________________________________________________________________

Security ID : QSA-25-47
Vulnerability in Malware Remover (PWN2OWN 2025)

    Release date : November 8, 2025

    CVE identifier : CVE-2025-11837 | ZDI-CAN-28324

    Affected products: Malware Remover 6.6.x

Severity
Critical

Status
Resolved


Summary

A vulnerability has been reported to affect Malware Remover. We
have already fixed the vulnerability in the following version:


Affected Product 	Fixed Version
Malware Remover 6.6.x 	Malware Remover 6.6.8.20251023 and later


Recommendation

To fix the vulnerability, we recommend updating Malware Remover
to the latest version.


Updating Malware Remover

    Log on to QTS or QuTS hero as an administrator.
    Open App Center and then click .
    A search box appears.
    Type "Malware Remover" and then press ENTER.
    Malware Remover appears in the search results.
    Click Update.
    A confirmation message appears.
    Note: The Update button is not available if your Malware
Remover is already up to date.
    Click OK.
    The system updates the application.

  

Acknowledgements: CyCraft Technology Intern

Revision History:
V1.0 (November 8, 2025) - Published


=========================================================
+ CERT-RENATER        |    tel : 01-53-94-20-44         +
+ 23/25 Rue Daviel    |    fax : 01-53-94-20-41         +
+ 75013 Paris         |   email:cert@support.renater.fr +
=========================================================




