CVE-2025-58469

A cross-site request forgery (CSRF) vulnerability has been reported to affect QuLog Center. The remote attackers can then exploit the vulnerability to gain privileges or hijack user identities. We have already fixed the vulnerability in the following version: QuLog Center 1.8.2.927 ( 2025/09/17 ) and later
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:qnap:qulog_center:*:*:*:*:*:*:*:*

History

14 Nov 2025, 18:22

Type Values Removed Values Added
First Time Qnap
Qnap qulog Center
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
CPE cpe:2.3:a:qnap:qulog_center:*:*:*:*:*:*:*:*
References () https://www.qnap.com/en/security-advisory/qsa-25-42 - () https://www.qnap.com/en/security-advisory/qsa-25-42 - Vendor Advisory

07 Nov 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-07 16:15

Updated : 2025-11-14 18:22


NVD link : CVE-2025-58469

Mitre link : CVE-2025-58469

CVE.ORG link : CVE-2025-58469


JSON object : View

Products Affected

qnap

  • qulog_center
CWE
CWE-352

Cross-Site Request Forgery (CSRF)