Vulnerability Database

308,820

Total vulnerabilities in the database

CVE-2024-13088

An improper authentication vulnerability has been reported to affect QHora. If an attacker gains local network access, they can then exploit the vulnerability to compromise the security of the system.

We have already fixed the vulnerability in the following version: QuRouter 2.5.0.140 and later

  • Published: Jun 6, 2025
  • Updated: Nov 16, 2025
  • CVE: CVE-2024-13088
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.8
  • AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Software From Fixed in
qnap / qurouter 2.4.0.190-build_20240522 2.4.0.190-build_20240522.x
qnap / qurouter 2.4.1.172-build_20240606 2.4.1.172-build_20240606.x
qnap / qurouter 2.4.1.634-build_20240710 2.4.1.634-build_20240710.x
qnap / qurouter 2.4.2.317-build_20240903 2.4.2.317-build_20240903.x
qnap / qurouter 2.4.2.538-build_20240923 2.4.2.538-build_20240923.x
qnap / qurouter 2.4.3.103-build_20241011 2.4.3.103-build_20241011.x
qnap / qurouter 2.4.4.106-build_20241017 2.4.4.106-build_20241017.x
qnap / qurouter 2.4.5.032-build_20241029 2.4.5.032-build_20241029.x
qnap / qurouter 2.4.6.028-build_20250207 2.4.6.028-build_20250207.x