CVE-2022-27598
- EPSS 0.3%
- Veröffentlicht 29.03.2023 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:56:00
A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability allows remote authenticated administrators to get secret values. The vulnerability affects the following QNAP operating systems: QT...
CVE-2023-23355
- EPSS 0.22%
- Veröffentlicht 29.03.2023 05:15:07
- Zuletzt bearbeitet 21.11.2024 07:46:01
An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly allows remote authenticated administrators to execute commands via unspecified vectors. QES is not affected. We have a...
CVE-2022-27596
- EPSS 18.94%
- Veröffentlicht 30.01.2023 02:15:08
- Zuletzt bearbeitet 21.11.2024 06:56:00
A vulnerability has been reported to affect QNAP device running QuTS hero, QTS. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions of QuTS hero, QTS: Q...
CVE-2021-44051
- EPSS 1.16%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
A command injection vulnerability has been reported to affect QNAP NAS running QuTScloud, QuTS hero and QTS. If exploited, this vulnerability allows remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following...
CVE-2021-44052
- EPSS 0.43%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
An improper link resolution before file access ('Link Following') vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, and QTS. If exploited, this vulnerability allows remote attackers to traverse the file system to uni...
CVE-2021-44053
- EPSS 0.42%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QTS, QuTS hero and QuTScloud. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in th...
CVE-2021-44054
- EPSS 0.21%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
An open redirect vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero and QTS. If exploited, this vulnerability allows attackers to redirect users to an untrusted page that contains malware. We have already fixed this vu...
CVE-2021-38693
- EPSS 0.27%
- Veröffentlicht 05.05.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:17:54
A path traversal vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, QTS, QVR Pro Appliance. If exploited, this vulnerability allows attackers to read the contents of unexpected files and expose sensitive data. We have...
CVE-2021-38674
- EPSS 0.29%
- Veröffentlicht 07.01.2022 02:15:07
- Zuletzt bearbeitet 21.11.2024 06:17:52
A cross-site scripting (XSS) vulnerability has been reported to affect QTS, QuTS hero and QuTScloud. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions...
CVE-2021-34343
- EPSS 0.48%
- Veröffentlicht 10.09.2021 04:15:18
- Zuletzt bearbeitet 21.11.2024 06:10:12
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following ve...