CVE-2021-44053
- EPSS 0.42%
- Published 05.05.2022 17:15:10
- Last modified 21.11.2024 06:30:18
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QTS, QuTS hero and QuTScloud. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in th...
CVE-2021-44052
- EPSS 0.42%
- Published 05.05.2022 17:15:10
- Last modified 21.11.2024 06:30:18
An improper link resolution before file access ('Link Following') vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, and QTS. If exploited, this vulnerability allows remote attackers to traverse the file system to uni...
CVE-2021-44051
- EPSS 1.8%
- Published 05.05.2022 17:15:10
- Last modified 21.11.2024 06:30:18
A command injection vulnerability has been reported to affect QNAP NAS running QuTScloud, QuTS hero and QTS. If exploited, this vulnerability allows remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following...
CVE-2021-38693
- EPSS 0.27%
- Published 05.05.2022 17:15:09
- Last modified 21.11.2024 06:17:54
A path traversal vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, QTS, QVR Pro Appliance. If exploited, this vulnerability allows attackers to read the contents of unexpected files and expose sensitive data. We have...
CVE-2021-38674
- EPSS 0.19%
- Published 07.01.2022 02:15:07
- Last modified 21.11.2024 06:17:52
A cross-site scripting (XSS) vulnerability has been reported to affect QTS, QuTS hero and QuTScloud. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions...
CVE-2021-34343
- EPSS 0.48%
- Published 10.09.2021 04:15:18
- Last modified 21.11.2024 06:10:12
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following ve...
CVE-2021-28816
- EPSS 0.7%
- Published 10.09.2021 04:15:17
- Last modified 21.11.2024 06:00:15
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following ve...
CVE-2018-19957
- EPSS 0.22%
- Published 10.09.2021 04:15:08
- Last modified 21.11.2024 03:58:53
A vulnerability involving insufficient HTTP security headers has been reported to affect QNAP NAS running QTS, QuTS hero, and QuTScloud. This vulnerability allows remote attackers to launch privacy and security attacks. We have already fixed this vul...
CVE-2021-28806
- EPSS 0.25%
- Published 03.06.2021 03:15:08
- Last modified 21.11.2024 06:00:14
A DOM-based XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerability allows attackers to inject malicious code. This issue affects: QNAP Systems Inc. QTS versions prior to 4.5.3.1652 Build 202...
CVE-2018-19942
- EPSS 0.27%
- Published 16.04.2021 01:15:12
- Last modified 21.11.2024 03:58:51
A cross-site scripting (XSS) vulnerability has been reported to affect earlier versions of File Station. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following vers...