ZDI-26-240: (Pwn2Own) QNAP QHora-322 qvpn_db_mgr role_type Improper Neutralization of Escape Sequences Authentication Bypass Vulnerability
This vulnerability allows remote attackers to bypass authentication on affected QNAP QHora-322 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The ZDI has assigned a CVSS rating of 6.3. The following CVEs are assigned: CVE-2025-62845.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-26-240?
The ZDI-26-240 vulnerability has a CVSS rating of 6.3, indicating a medium severity risk.
How do I fix ZDI-26-240?
To fix ZDI-26-240, ensure that you update your QNAP QHora-322 router firmware to the latest version released by QNAP.
Who is affected by ZDI-26-240?
The ZDI-26-240 vulnerability affects users of the QNAP QHora-322 routers.
What type of vulnerability is ZDI-26-240?
ZDI-26-240 is classified as an authentication bypass vulnerability due to improper neutralization of escape sequences.
Can ZDI-26-240 be exploited remotely?
Yes, the ZDI-26-240 vulnerability can be exploited remotely by attackers who can bypass the authentication mechanism.