We have already fixed the vulnerability in the following version:
QuLog Center 1.8.2.927 ( 2025/09/17 ) and later
Metrics
Affected Vendors & Products
No advisories yet.
Solution
We have already fixed the vulnerability in the following version: QuLog Center 1.8.2.927 ( 2025/09/17 ) and later
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.qnap.com/en/security-advisory/qsa-25-42 |
|
Fri, 14 Nov 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:qnap:qulog_center:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Mon, 10 Nov 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Qnap
Qnap qulog Center |
|
| Vendors & Products |
Qnap
Qnap qulog Center |
Fri, 07 Nov 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 07 Nov 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A cross-site request forgery (CSRF) vulnerability has been reported to affect QuLog Center. The remote attackers can then exploit the vulnerability to gain privileges or hijack user identities. We have already fixed the vulnerability in the following version: QuLog Center 1.8.2.927 ( 2025/09/17 ) and later | |
| Title | QuLog Center | |
| Weaknesses | CWE-352 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: qnap
Published:
Updated: 2025-11-07T15:48:30.618Z
Reserved: 2025-09-03T00:59:25.448Z
Link: CVE-2025-58469
Updated: 2025-11-07T15:48:06.707Z
Status : Analyzed
Published: 2025-11-07T16:15:41.387
Modified: 2025-11-14T18:22:24.327
Link: CVE-2025-58469
No data.
OpenCVE Enrichment
Updated: 2025-11-10T09:34:32Z