CVE-2025-29887 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A command injection vulnerability has been reported to affect QuRouter 2.5.1. If a remote attacker gains an administrator account, they can then exploit the vul…
High CVSS: 7.1

CVE-2025-29887

A command injection vulnerability has been reported to affect QuRouter 2.5.1. If a remote attacker gains an administrator account, they can then exploit the vulnerability to execute arbitrary commands.

We have already fixed the vulnerability in the following version:
QuRouter 2.5.1.060 and later
Vendor
Qnap
Product
Qurouter
CWE
CWE-77
Yayın Tarihi
2025-08-29 18:15:35
Güncelleme
2025-09-24 18:11:51
Source Identifier
security@qnapsecurity.com.tw
KEV Date Added
-

Kategoriler

Referanslar