CVE-2025-62845: QuRouter
An improper neutralization of escape, meta, or control sequences vulnerability has been reported to affect QHora. If a local attacker gains an administrator account, they can then exploit the vulnerability to cause unexpected behavior.
We have already fixed the vulnerability in the following version: QuRouter 2.6.3.009 and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-62845?
CVE-2025-62845 is classified as a high-severity vulnerability due to its potential impact on the affected QHora and QuRouter devices.
How do I fix CVE-2025-62845?
To mitigate CVE-2025-62845, ensure that your QHora or QuRouter device is updated to the latest version beyond 2.6.3.009.
Who is affected by CVE-2025-62845?
CVE-2025-62845 affects users of QHora and QuRouter devices running versions up to but not including 2.6.3.009.
What type of vulnerability is CVE-2025-62845?
CVE-2025-62845 is an improper neutralization of escape, meta, or control sequences vulnerability.
Can a remote attacker exploit CVE-2025-62845?
No, CVE-2025-62845 can only be exploited by a local attacker with administrative access.