CVE-2024-48868
- EPSS 0.12%
- Published 06.12.2024 17:15:09
- Last modified 23.09.2025 14:11:55
An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to modify application data. We have alread...
CVE-2024-50393
- EPSS 0.71%
- Published 06.12.2024 17:15:09
- Last modified 23.09.2025 14:17:28
A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to execute arbitrary commands. We have already fixed the vulnerability in the followin...
CVE-2024-50402
- EPSS 0.17%
- Published 06.12.2024 17:15:09
- Last modified 23.09.2025 14:18:23
A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or ...
CVE-2024-50403
- EPSS 0.17%
- Published 06.12.2024 17:15:09
- Last modified 23.09.2025 14:18:47
A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or ...
CVE-2024-48859
- EPSS 0.21%
- Published 06.12.2024 17:15:08
- Last modified 23.09.2025 13:59:40
An improper authentication vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to compromise the security of the system. We have already fixed the vulnerabili...
CVE-2024-48865
- EPSS 0.04%
- Published 06.12.2024 17:15:08
- Last modified 23.09.2025 14:05:10
An improper certificate validation vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow attackers with local network access to compromise the security of the system. We have al...
CVE-2024-48866
- EPSS 0.12%
- Published 06.12.2024 17:15:08
- Last modified 23.09.2025 14:10:21
An improper handling of URL encoding (Hex Encoding) vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to run the system into unexpected state. We have alrea...
CVE-2024-48867
- EPSS 0.12%
- Published 06.12.2024 17:15:08
- Last modified 23.09.2025 14:10:57
An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to modify application data. We have alread...
CVE-2024-50399
- EPSS 0.23%
- Published 22.11.2024 16:15:33
- Last modified 23.09.2025 13:51:19
A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or ...
CVE-2024-50400
- EPSS 0.23%
- Published 22.11.2024 16:15:33
- Last modified 23.09.2025 13:51:30
A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or ...