CVE-2025-54168: QuLog Center
A cross-site scripting (XSS) vulnerability has been reported to affect QuLog Center. If a remote attacker gains an administrator account, they can then exploit the vulnerability to bypass security mechanisms or read application data.
We have already fixed the vulnerability in the following version: QuLog Center 1.8.2.923 ( 2025/08/27 ) and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54168?
CVE-2025-54168 is classified as a high-severity cross-site scripting (XSS) vulnerability.
How do I fix CVE-2025-54168?
To fix CVE-2025-54168, update QuLog Center to the latest version beyond 1.8.2.923.
What software is affected by CVE-2025-54168?
CVE-2025-54168 affects QuLog Center versions up to and excluding 1.8.2.923.
What type of vulnerability is CVE-2025-54168?
CVE-2025-54168 is a cross-site scripting (XSS) vulnerability affecting QuLog Center.
Can an attacker exploit CVE-2025-54168 without an administrator account?
No, an attacker must gain an administrator account to exploit CVE-2025-54168.