ZDI-26-200: (Pwn2Own) QNAP TS-453E nvrlog_event_add msg SQL Injection Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of QNAP TS-453E devices. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The ZDI has assigned a CVSS rating of 8.0. The following CVEs are assigned: CVE-2025-62849.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-26-200?
The severity of ZDI-26-200 is high due to its potential for remote code execution.
How do I fix ZDI-26-200?
To fix ZDI-26-200, update your QNAP TS-453E device to the latest firmware provided by QNAP.
What type of attacks can ZDI-26-200 enable?
ZDI-26-200 can enable attacks that allow network-adjacent attackers to execute arbitrary code.
Is authentication required to exploit ZDI-26-200?
Yes, authentication is required to exploit the ZDI-26-200 vulnerability.
What devices are affected by ZDI-26-200?
The QNAP TS-453E device is affected by the ZDI-26-200 vulnerability.