Q Free Security Vulnerabilities (CVEs)

Track 32 security vulnerabilities affecting Q Free products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

7 Critical
16 High
9 Medium
🔔 Get Alerts for Q Free
CVE-2025-26378 8.8

A missing authorization vulnerability in Q-Free MaxTime allows authenticated low-privileged users to reset passwords, including administrator accounts...

Feb 12, 2025
CVE-2025-26371 8.8

This vulnerability allows authenticated low-privileged attackers to add users to groups in Q-Free MaxTime systems via crafted HTTP requests. It affect...

Feb 12, 2025
CVE-2025-26372 7.1

This vulnerability allows authenticated low-privileged attackers to remove users from groups in Q-Free MaxTime systems via crafted HTTP requests. It a...

Feb 12, 2025
CVE-2025-26373 6.5

This vulnerability allows authenticated low-privileged attackers to enumerate user accounts in Q-Free MaxTime systems via crafted HTTP requests to the...

Feb 12, 2025
CVE-2025-26375 8.8

This vulnerability allows authenticated low-privileged users in Q-Free MaxTime systems to create new user accounts with arbitrary administrative privi...

Feb 12, 2025
CVE-2025-26376 6.5

This vulnerability allows authenticated low-privileged attackers to modify user data in Q-Free MaxTime systems via crafted HTTP requests. It affects a...

Feb 12, 2025
CVE-2025-26377 8.1

This vulnerability allows authenticated low-privileged attackers to delete user accounts in Q-Free MaxTime systems via crafted HTTP requests. It affec...

Feb 12, 2025
CVE-2025-26364 7.5

An unauthenticated remote attacker can disable authentication profile servers in Q-Free MaxTime traffic management systems by sending crafted HTTP req...

Feb 12, 2025
CVE-2025-26365 7.5

This vulnerability allows unauthenticated remote attackers to enable front panel authentication on Q-Free MaxTime systems via crafted HTTP requests. I...

Feb 12, 2025
CVE-2025-26366 7.5

An unauthenticated remote attacker can disable front panel authentication in Q-Free MaxTime systems via crafted HTTP requests. This affects all Q-Free...

Feb 12, 2025
CVE-2025-26367 4.3

This vulnerability allows authenticated low-privileged attackers to create arbitrary user groups in Q-Free MaxTime traffic management systems. Attacke...

Feb 12, 2025
CVE-2025-26368 8.1

A missing authorization vulnerability in Q-Free MaxTime allows authenticated low-privileged users to delete user groups via crafted HTTP requests. Thi...

Feb 12, 2025
CVE-2025-26369 8.8

A missing authorization vulnerability in Q-Free MaxTime allows authenticated low-privileged users to escalate privileges by adding permissions to user...

Feb 12, 2025
CVE-2025-26370 7.1

This vulnerability allows authenticated low-privileged attackers to remove privileges from user groups in Q-Free MaxTime traffic management systems. A...

Feb 12, 2025
CVE-2025-26356 7.2

This path traversal vulnerability in Q-Free MaxTime allows authenticated remote attackers to overwrite sensitive files by manipulating file paths in H...

Feb 12, 2025
CVE-2025-26357 4.9

This vulnerability allows authenticated remote attackers to read sensitive files on Q-Free MaxTime systems via path traversal attacks. Attackers can a...

Feb 12, 2025
CVE-2025-26359 9.8

This vulnerability allows unauthenticated remote attackers to reset user PINs in Q-Free MaxTime systems via crafted HTTP requests. It affects all Q-Fr...

Feb 12, 2025
CVE-2025-26361 9.1

CVE-2025-26361 allows unauthenticated remote attackers to factory reset Q-Free MaxTime devices via crafted HTTP requests due to missing authentication...

Feb 12, 2025
CVE-2025-26363 7.5

This vulnerability allows unauthenticated remote attackers to enable authentication profile servers in Q-Free MaxTime traffic management systems via c...

Feb 12, 2025
CVE-2025-26350 4.9

This vulnerability allows authenticated remote attackers to upload malicious files to Q-Free MaxTime systems via template file uploads. Attackers can ...

Feb 12, 2025
CVE-2025-26352 6.5

This path traversal vulnerability in Q-Free MaxTime allows authenticated remote attackers to delete sensitive files by manipulating HTTP requests. It ...

Feb 12, 2025
CVE-2025-26354 7.2

This path traversal vulnerability in Q-Free MaxTime allows authenticated remote attackers to overwrite sensitive files by manipulating file paths in H...

Feb 12, 2025
CVE-2025-26355 6.5

This path traversal vulnerability in Q-Free MaxTime allows authenticated remote attackers to delete sensitive files via crafted HTTP requests. It affe...

Feb 12, 2025
CVE-2025-26343 8.1

This vulnerability allows unauthenticated remote attackers to brute-force user PINs in Q-Free MaxTime parking management systems via crafted HTTP requ...

Feb 12, 2025
CVE-2025-26344 9.8

This vulnerability allows unauthenticated remote attackers to enable passwordless guest mode in Q-Free MaxTime systems via crafted HTTP requests. It a...

Feb 12, 2025
CVE-2025-26346 5.5

This SQL injection vulnerability in Q-Free MaxTime allows authenticated attackers to execute arbitrary SQL commands via crafted HTTP requests to the e...

Feb 12, 2025
CVE-2025-26347 9.8

This vulnerability allows unauthenticated remote attackers to edit user permissions in Q-Free MaxTime traffic management systems via crafted HTTP requ...

Feb 12, 2025
CVE-2025-26349 7.2

This vulnerability allows authenticated remote attackers to overwrite arbitrary files on Q-Free MaxTime systems by exploiting a relative path traversa...

Feb 12, 2025
CVE-2025-26339 9.8

This vulnerability allows unauthenticated remote attackers to send crafted HTTP requests to Q-Free MaxTime traffic management systems, potentially com...

Feb 12, 2025
CVE-2025-26341 9.8

This vulnerability allows unauthenticated remote attackers to reset arbitrary user passwords in Q-Free MaxTime systems via crafted HTTP requests. It a...

Feb 12, 2025
CVE-2025-1100 9.8

CVE-2025-1100 is a critical vulnerability in Q-Free MaxTime traffic management software where a hard-coded root password allows unauthenticated remote...

Feb 12, 2025
CVE-2025-1102 5.5

A CORS misconfiguration vulnerability in Q-Free MaxTime allows attackers to bypass origin validation and perform cross-origin attacks. This affects al...

Feb 12, 2025

Why Monitor Q Free Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 32+ known vulnerabilities affecting Q Free products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Q Free packages in under 60 seconds. No agents required - completely agentless scanning that works across Q Free deployments.

Free vulnerability database: Access detailed information about every Q Free CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Q Free CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Q Free CVEs Free