CVE-2021-44053
- EPSS 0.42%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QTS, QuTS hero and QuTScloud. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in th...
CVE-2021-44052
- EPSS 0.42%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
An improper link resolution before file access ('Link Following') vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, and QTS. If exploited, this vulnerability allows remote attackers to traverse the file system to uni...
CVE-2021-44051
- EPSS 1.8%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
A command injection vulnerability has been reported to affect QNAP NAS running QuTScloud, QuTS hero and QTS. If exploited, this vulnerability allows remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following...
CVE-2021-38693
- EPSS 0.27%
- Veröffentlicht 05.05.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:17:54
A path traversal vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, QTS, QVR Pro Appliance. If exploited, this vulnerability allows attackers to read the contents of unexpected files and expose sensitive data. We have...
CVE-2021-38674
- EPSS 0.19%
- Veröffentlicht 07.01.2022 02:15:07
- Zuletzt bearbeitet 21.11.2024 06:17:52
A cross-site scripting (XSS) vulnerability has been reported to affect QTS, QuTS hero and QuTScloud. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions...
CVE-2021-34343
- EPSS 0.48%
- Veröffentlicht 10.09.2021 04:15:18
- Zuletzt bearbeitet 21.11.2024 06:10:12
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following ve...
CVE-2021-28816
- EPSS 0.7%
- Veröffentlicht 10.09.2021 04:15:17
- Zuletzt bearbeitet 21.11.2024 06:00:15
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following ve...
CVE-2018-19957
- EPSS 0.22%
- Veröffentlicht 10.09.2021 04:15:08
- Zuletzt bearbeitet 21.11.2024 03:58:53
A vulnerability involving insufficient HTTP security headers has been reported to affect QNAP NAS running QTS, QuTS hero, and QuTScloud. This vulnerability allows remote attackers to launch privacy and security attacks. We have already fixed this vul...
CVE-2021-28806
- EPSS 0.25%
- Veröffentlicht 03.06.2021 03:15:08
- Zuletzt bearbeitet 21.11.2024 06:00:14
A DOM-based XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerability allows attackers to inject malicious code. This issue affects: QNAP Systems Inc. QTS versions prior to 4.5.3.1652 Build 202...
CVE-2018-19942
- EPSS 0.27%
- Veröffentlicht 16.04.2021 01:15:12
- Zuletzt bearbeitet 21.11.2024 03:58:51
A cross-site scripting (XSS) vulnerability has been reported to affect earlier versions of File Station. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following vers...